CVE-2023-23538: Input Validation
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.3, macOS Monterey 12.6.4. An app may be able to modify protected parts of the file system
Other sources
AMD. A buffer overflow issue was addressed with improved memory handling.
— Apple
AMD. The issue was addressed with improved bounds checks.
— Apple
App Store. A privacy issue was addressed with improved private data redaction for log entries.
— Apple
Apple Neural Engine. The issue was addressed with improved memory handling.
— Apple
Apple Neural Engine. This issue was addressed with improved checks.
— Apple
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-23540
- CVE-2023-23527
- CVE-2023-27951
- CVE-2023-27961
- CVE-2023-27955
- CVE-2023-27936
- CVE-2023-28181
- CVE-2023-40398
- CVE-2023-27935
- CVE-2023-27934
- CVE-2023-27953
- CVE-2023-27958
- CVE-2023-23537
- CVE-2023-32366
- CVE-2023-27937
- CVE-2023-27946
- CVE-2023-32378
- CVE-2023-27941
- CVE-2023-28199
- CVE-2023-23536
- CVE-2023-23514
- CVE-2023-27933
- CVE-2023-28200
- CVE-2023-28185
- CVE-2023-41075
- CVE-2023-28189
- CVE-2023-28197
- CVE-2023-27949
- CVE-2023-28182
- CVE-2023-23538
- CVE-2023-27962
- CVE-2023-27942
- CVE-2023-23533
- CVE-2023-28178
- CVE-2023-27963
- CVE-2023-23542
- CVE-2023-28192
- CVE-2023-0433
- CVE-2023-0512
- CVE-2023-27944
- CVE-2023-32436
- CVE-2023-27968
- CVE-2023-28209
- CVE-2023-28210
- CVE-2023-28211
- CVE-2023-28212
- CVE-2023-28213
- CVE-2023-28214
- CVE-2023-28215
- CVE-2023-32356
- CVE-2023-23532
- CVE-2023-27931
- CVE-2023-28179
- CVE-2023-42830
- CVE-2023-23543
- CVE-2023-23534
- CVE-2023-32426
- CVE-2022-43551
- CVE-2022-43552
- CVE-2023-28180
- CVE-2023-40433
- CVE-2023-28190
- CVE-2023-28195
- CVE-2023-27956
- CVE-2023-23526
- CVE-2023-27928
- CVE-2023-27939
- CVE-2023-27947
- CVE-2023-27948
- CVE-2023-42862
- CVE-2023-42865
- CVE-2023-23535
- CVE-2023-27929
- CVE-2023-27957
- CVE-2023-28187
- CVE-2023-27969
- CVE-2023-27943
- CVE-2023-23525
- CVE-2023-40383
- CVE-2023-27950
- CVE-2023-23523
- CVE-2023-32362
- CVE-2023-27952
- CVE-2023-27966
- CVE-2023-28188
- CVE-2023-0049
- CVE-2023-0051
- CVE-2023-0054
- CVE-2023-0288
- CVE-2023-32370
- CVE-2023-28198
- CVE-2023-32435
- CVE-2023-27932
- CVE-2023-27954
- CVE-2014-1745
- CVE-2023-32358
- CVE-2023-28201
- CVE-2023-28207
Frequently Asked Questions
What is the severity of CVE-2023-23538?
The severity of CVE-2023-23538 is medium with a severity score of 5.5.
How does CVE-2023-23538 affect macOS Ventura?
CVE-2023-23538 affects macOS Ventura versions up to but excluding 13.3.
How does CVE-2023-23538 affect macOS Monterey?
CVE-2023-23538 affects macOS Monterey versions up to but excluding 12.6.4.
Is there a fix available for CVE-2023-23538?
Yes, the fix for CVE-2023-23538 is available in macOS Ventura 13.3 and macOS Monterey 12.6.4.
How can an app modify protected parts of the file system in relation to CVE-2023-23538?
CVE-2023-23538 allows an app to modify protected parts of the file system.