Skip to content

CVE-2023-42855

MEDIUM  |  Platform: iOS  |  Changelog

CVE Details

Description

This issue was addressed with improved state management. This issue is fixed in iOS 17.1 and iPadOS 17.1. An attacker with physical access may be able to silently persist an Apple ID on an erased device.

CVSS 3.1 Score

MetricValue
Base Score4.6 (MEDIUM)
VectorCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

References