CVE-2023-38424

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Jul 27, 2023
Updated: Aug 3, 2023

Summary

CVE-2023-38424 is a newly identified vulnerability affecting iOS and iPadOS, as well as macOS. This issue stems from improper memory handling, which allows a malicious application to execute arbitrary code with kernel privileges. The good news is that this vulnerability has been addressed in the latest releases of iOS 16.6 and iPadOS 16.6, as well as macOS Ventura 13.5. Users are strongly encouraged to update their devices to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Apple (iPhone OS)
  • iPadOS
  • MacOS

Affected Vendors

  • Apple