CVE-2023-32383
HIGH | Platform: macOS | Changelog
CVE Details
Description
This issue was addressed by forcing hardened runtime on the affected binaries at the system level. This issue is fixed in macOS Monterey 12.6.6, macOS Big Sur 11.7.7, macOS Ventura 13.4. An app may be able to inject code into sensitive binaries bundled with Xcode.
CVSS 3.1 Score
| Metric | Value |
|---|---|
| Base Score | 7.8 (HIGH) |
| Vector | CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Weakness
References
- Apple Security Advisory
- NVD Entry
- https://support.apple.com/en-us/HT213758 (Release Notes, Vendor Advisory)
- https://support.apple.com/en-us/HT213759 (Release Notes, Vendor Advisory)
- https://support.apple.com/en-us/HT213760 (Release Notes, Vendor Advisory)