CVE-2023-23539: Buffer Overflow
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.2. Mounting a maliciously crafted Samba network share may lead to arbitrary code execution.
Other sources
dcerpc. A buffer overflow issue was addressed with improved memory handling.
— Apple
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-32438
- CVE-2023-23499
- CVE-2023-23520
- CVE-2022-42915
- CVE-2022-42916
- CVE-2022-32221
- CVE-2022-35260
- CVE-2023-23539
- CVE-2023-23513
- CVE-2023-23493
- CVE-2023-41990
- CVE-2023-23530
- CVE-2023-23531
- CVE-2023-23519
- CVE-2023-23507
- CVE-2023-23516
- CVE-2023-23500
- CVE-2023-23502
- CVE-2023-23504
- CVE-2023-23506
- CVE-2023-23498
- CVE-2023-23503
- CVE-2023-28208
- CVE-2023-23497
- CVE-2023-23510
- CVE-2023-23512
- CVE-2023-23505
- CVE-2022-3705
- CVE-2023-23511
- CVE-2023-32393
- CVE-2023-23496
- CVE-2023-23518
- CVE-2023-23517
- CVE-2023-23501
- CVE-2023-23508
- CVE-2022-0108
Frequently Asked Questions
What is CVE-2023-23539?
CVE-2023-23539 is a buffer overflow vulnerability in macOS Ventura 13.0 to 13.1 that allows arbitrary code execution when mounting a malicious Samba network share.
How can this vulnerability be exploited?
This vulnerability can be exploited by mounting a specially crafted Samba network share.
What is the severity of CVE-2023-23539?
CVE-2023-23539 has a severity rating of 7.8 (high).
How can I fix CVE-2023-23539?
To fix CVE-2023-23539, you need to update your macOS Ventura to version 13.2 or higher.
Where can I find more information about CVE-2023-23539?
You can find more information about CVE-2023-23539 at the following link: https://support.apple.com/en-us/HT213605