CVE-2023-27970: High severity Apple Ipad Os vulnerability
Accessibility. A privacy issue was addressed with improved private data redaction for log entries.
Other sources
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 16.4 and iPadOS 16.4. An app may be able to execute arbitrary code with kernel privileges
App Store. A privacy issue was addressed with improved private data redaction for log entries.
— Apple
Apple Neural Engine. An out-of-bounds write issue was addressed with improved bounds checking.
— Apple
Apple Neural Engine. The issue was addressed with improved memory handling.
— Apple
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-23541
- CVE-2023-42830
- CVE-2023-23540
- CVE-2023-27959
- CVE-2023-27970
- CVE-2023-23532
- CVE-2023-23527
- CVE-2023-27931
- CVE-2023-27961
- CVE-2023-23543
- CVE-2023-23494
- CVE-2023-27955
- CVE-2023-23528
- CVE-2023-28181
- CVE-2023-40398
- CVE-2023-28195
- CVE-2023-23537
- CVE-2023-32366
- CVE-2023-27956
- CVE-2023-27937
- CVE-2023-23526
- CVE-2023-27928
- CVE-2023-23535
- CVE-2023-27929
- CVE-2023-42862
- CVE-2023-42865
- CVE-2023-28187
- CVE-2023-28185
- CVE-2023-32424
- CVE-2023-27969
- CVE-2023-27933
- CVE-2023-23536
- CVE-2023-27943
- CVE-2023-23525
- CVE-2023-41075
- CVE-2022-46724
- CVE-2023-28182
- CVE-2023-23523
- CVE-2023-27942
- CVE-2023-28194
- CVE-2023-28178
- CVE-2023-27963
- CVE-2023-28188
- CVE-2023-32370
- CVE-2023-28198
- CVE-2022-46725
- CVE-2023-32435
- CVE-2023-27932
- CVE-2023-27954
- CVE-2022-46705
- CVE-2014-1745
- CVE-2023-32358
- CVE-2023-28201
Frequently Asked Questions
What is the severity of CVE-2023-27970?
The severity of CVE-2023-27970 is high with a score of 7.8.
How was the out-of-bounds write issue in CVE-2023-27970 addressed?
The out-of-bounds write issue in CVE-2023-27970 was addressed with improved bounds checking.
Which versions of iOS and iPadOS are affected by CVE-2023-27970?
iOS 16.4 and iPadOS 16.4 are affected by CVE-2023-27970.
How can an app exploit CVE-2023-27970?
An app may be able to execute arbitrary code with kernel privileges by exploiting CVE-2023-27970.
How can I fix CVE-2023-27970?
CVE-2023-27970 is fixed in iOS 16.4 and iPadOS 16.4, so make sure you update to those versions.