CVE-2023-40394
LOW | Platform: iOS | Changelog
CVE Details
Description
The issue was addressed with improved validation of environment variables. This issue is fixed in iOS 16.6 and iPadOS 16.6. An app may be able to access sensitive user data.
CVSS 3.1 Score
| Metric | Value |
|---|---|
| Base Score | 3.3 (LOW) |
| Vector | CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N |
Weakness
References
- Apple Security Advisory
- NVD Entry
- https://support.apple.com/en-us/HT213841 (Release Notes, Vendor Advisory)