TROYANOSYVIRUS
Volver a CVEs

CVE-2023-32383

HIGH
7.8

Descripcion

This issue was addressed by forcing hardened runtime on the affected binaries at the system level. This issue is fixed in macOS Monterey 12.6.6, macOS Big Sur 11.7.7, macOS Ventura 13.4. An app may be able to inject code into sensitive binaries bundled with Xcode.

Detalles CVE

Puntuacion CVSS v3.17.8
SeveridadHIGH
Vector CVSSCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Vector de ataqueLOCAL
ComplejidadLOW
Privilegios requeridosNONE
Interaccion usuarioREQUIRED
Publicado1/10/2024
Ultima modificacion6/20/2025
Fuentenvd
Avistamientos honeypot0

Productos afectados

apple:macos

Debilidades (CWE)

CWE-94

Referencias

https://support.apple.com/en-us/HT213758(product-security@apple.com)
https://support.apple.com/en-us/HT213759(product-security@apple.com)
https://support.apple.com/en-us/HT213760(product-security@apple.com)
https://support.apple.com/en-us/HT213758(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/en-us/HT213759(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/en-us/HT213760(af854a3a-2127-422b-91ae-364da2661108)

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.