CVE-2023-23528: Buffer Overflow
Accessibility. A privacy issue was addressed with improved private data redaction for log entries.
Credit
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-23528?
CVE-2023-23528 is a vulnerability in Core Bluetooth that allows for an out-of-bounds read when processing a maliciously crafted Bluetooth packet, potentially resulting in the disclosure of process memory.
How does CVE-2023-23528 affect Apple devices?
CVE-2023-23528 affects Apple devices running tvOS, iOS, and iPadOS versions up to and including 16.4.
What is the severity of CVE-2023-23528?
CVE-2023-23528 has a severity rating of 6.5, which is considered medium.
How can I fix CVE-2023-23528?
CVE-2023-23528 is fixed in tvOS 16.4, iOS 16.4, and iPadOS 16.4. Update your Apple device to the latest available version to mitigate the vulnerability.
Where can I find more information about CVE-2023-23528?
You can find more information about CVE-2023-23528 on the Apple Support website: [https://support.apple.com/en-us/HT213674](https://support.apple.com/en-us/HT213674) and [https://support.apple.com/en-us/HT213676](https://support.apple.com/en-us/HT213676)