Description
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to execute arbitrary code with kernel privileges.
References (7)
Core 7
Core References
Mailing List, Third Party Advisory
http://seclists.org/fulldisclosure/2023/Oct/3
Mailing List, Third Party Advisory
http://seclists.org/fulldisclosure/2023/Oct/8
Release Notes, Vendor Advisory
https://support.apple.com/en-us/HT213938
Release Notes, Vendor Advisory
https://support.apple.com/en-us/HT213940
Release Notes, Vendor Advisory
https://support.apple.com/kb/HT213841
Vendor Advisory
https://support.apple.com/kb/HT213938
Vendor Advisory
https://support.apple.com/kb/HT213940
Scores
CVSS v3
7.8
EPSS
0.0014
EPSS Percentile
34.2%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Details
CWE
CWE-416
Status
published
Products (3)
apple/ipados
< 16.6
apple/iphone_os
< 16.6
apple/macos
< 14.0
Published
Sep 27, 2023
Tracked Since
Feb 18, 2026