Описание
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Ventura 13.2.1, iOS 16.3.1 and iPadOS 16.3.1. An app may be able to execute arbitrary code with kernel privileges..
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Ventura 13.2.1, iOS 16.3.1 and iPadOS 16.3.1. An app may be able to execute arbitrary code with kernel privileges..
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2023-23514
- https://support.apple.com/en-us/HT213633
- https://support.apple.com/en-us/HT213635
- https://support.apple.com/en-us/HT213670
- https://support.apple.com/en-us/HT213675
- https://support.apple.com/en-us/HT213677
- https://support.apple.com/kb/HT213670
- https://support.apple.com/kb/HT213675
- https://support.apple.com/kb/HT213677
- http://packetstormsecurity.com/files/171359/XNU-NFSSVC-Root-Check-Bypass-Use-After-Free.html
- http://seclists.org/fulldisclosure/2023/Mar/17
- http://seclists.org/fulldisclosure/2023/Mar/18
- http://seclists.org/fulldisclosure/2023/Mar/21
Связанные уязвимости
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Ventura 13.3, macOS Monterey 12.6.4, iOS 16.3.1 and iPadOS 16.3.1, macOS Ventura 13.2.1, macOS Big Sur 11.7.5. An app may be able to execute arbitrary code with kernel privileges.
Уязвимость операционных систем iOS, iPadOS и macOS Ventura, связанная с использованием памяти после её освобождения, позволяющая нарушителю выполнить произвольный код