CVE-2023-28192: Use After Free
A permissions issue was addressed with improved validation. This issue is fixed in macOS Ventura 13.3, macOS Monterey 12.6.4, macOS Big Sur 11.7.5. An app may be able to read sensitive location information
Other sources
AMD. A buffer overflow issue was addressed with improved memory handling.
— Apple
AMD. The issue was addressed with improved bounds checks.
— Apple
App Store. A privacy issue was addressed with improved private data redaction for log entries.
— Apple
Apple Neural Engine. The issue was addressed with improved memory handling.
— Apple
Apple Neural Engine. This issue was addressed with improved checks.
— Apple
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-23540
- CVE-2022-26702
- CVE-2023-23527
- CVE-2023-27951
- CVE-2023-27961
- CVE-2023-23534
- CVE-2023-27955
- CVE-2023-27936
- CVE-2023-40398
- CVE-2023-27935
- CVE-2023-27953
- CVE-2023-27958
- CVE-2023-23537
- CVE-2023-32366
- CVE-2023-27937
- CVE-2023-27928
- CVE-2023-27946
- CVE-2023-23535
- CVE-2023-32378
- CVE-2023-27941
- CVE-2023-28199
- CVE-2023-23536
- CVE-2023-23514
- CVE-2023-28200
- CVE-2023-28185
- CVE-2023-23525
- CVE-2023-41075
- CVE-2023-28189
- CVE-2023-28197
- CVE-2023-28182
- CVE-2023-27962
- CVE-2023-27942
- CVE-2023-23542
- CVE-2023-28192
- CVE-2023-0433
- CVE-2023-0512
- CVE-2023-27944
- CVE-2023-28181
- CVE-2023-27934
- CVE-2023-27933
- CVE-2023-27949
- CVE-2023-23538
- CVE-2023-23533
- CVE-2023-28178
- CVE-2023-27963
- CVE-2023-32436
- CVE-2023-27968
- CVE-2023-28209
- CVE-2023-28210
- CVE-2023-28211
- CVE-2023-28212
- CVE-2023-28213
- CVE-2023-28214
- CVE-2023-28215
- CVE-2023-32356
- CVE-2023-23532
- CVE-2023-27931
- CVE-2023-28179
- CVE-2023-42830
- CVE-2023-23543
- CVE-2023-32426
- CVE-2022-43551
- CVE-2022-43552
- CVE-2023-28180
- CVE-2023-40433
- CVE-2023-28190
- CVE-2023-28195
- CVE-2023-27956
- CVE-2023-23526
- CVE-2023-27939
- CVE-2023-27947
- CVE-2023-27948
- CVE-2023-42862
- CVE-2023-42865
- CVE-2023-27929
- CVE-2023-27957
- CVE-2023-28187
- CVE-2023-27969
- CVE-2023-27943
- CVE-2023-40383
- CVE-2023-27950
- CVE-2023-23523
- CVE-2023-32362
- CVE-2023-27952
- CVE-2023-27966
- CVE-2023-28188
- CVE-2023-0049
- CVE-2023-0051
- CVE-2023-0054
- CVE-2023-0288
- CVE-2023-32370
- CVE-2023-28198
- CVE-2023-32435
- CVE-2023-27932
- CVE-2023-27954
- CVE-2014-1745
- CVE-2023-32358
- CVE-2023-28201
- CVE-2023-28207
Frequently Asked Questions
What is CVE-2023-28192?
CVE-2023-28192 is a vulnerability in the System Settings of macOS that allows an app to read sensitive location information due to a permissions issue.
What is the severity of CVE-2023-28192?
The severity of CVE-2023-28192 is medium with a severity value of 5.5.
What is the affected software for CVE-2023-28192?
The affected software for CVE-2023-28192 includes macOS Ventura 13.3, macOS Monterey 12.6.4, and macOS Big Sur 11.7.5.
How can I fix CVE-2023-28192?
To fix CVE-2023-28192, update your macOS to the fixed versions: macOS Ventura 13.3, macOS Monterey 12.6.4, and macOS Big Sur 11.7.5.
Where can I find more information about CVE-2023-28192?
More information about CVE-2023-28192 can be found on the Apple support page: [link](https://support.apple.com/en-us/HT213675).