CVE-2023-28208: Medium severity macos ventura vulnerability
A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.2, iOS 16.3 and iPadOS 16.3. A user may send a text from a secondary eSIM despite configuring a contact to use a primary eSIM.
Other sources
Messages. A logic issue was addressed with improved state management.
— Apple
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-32438
- CVE-2023-23499
- CVE-2023-23520
- CVE-2022-42915
- CVE-2022-42916
- CVE-2022-32221
- CVE-2022-35260
- CVE-2023-23539
- CVE-2023-23513
- CVE-2023-23493
- CVE-2023-41990
- CVE-2023-23530
- CVE-2023-23531
- CVE-2023-23519
- CVE-2023-23507
- CVE-2023-23516
- CVE-2023-23500
- CVE-2023-23502
- CVE-2023-23504
- CVE-2023-23506
- CVE-2023-23498
- CVE-2023-23503
- CVE-2023-28208
- CVE-2023-23497
- CVE-2023-23510
- CVE-2023-23512
- CVE-2023-23505
- CVE-2022-3705
- CVE-2023-23511
- CVE-2023-32393
- CVE-2023-23496
- CVE-2023-23518
- CVE-2023-23517
- CVE-2023-23501
- CVE-2023-23508
- CVE-2022-0108
Frequently Asked Questions
What is the severity of CVE-2023-28208?
The severity of CVE-2023-28208 is medium with a severity value of 4.3.
What is the description of CVE-2023-28208?
CVE-2023-28208 is a logic issue in Messages that was addressed with improved state management. A user may send a text from a secondary eSIM despite configuring a contact to use a primary eSIM.
Which Apple software versions are affected by CVE-2023-28208?
CVE-2023-28208 affects macOS Ventura 13.0 to 13.1.1, iOS up to 16.2, and iPadOS up to 16.2.
How can I fix CVE-2023-28208?
To fix CVE-2023-28208, update your macOS Ventura to version 13.2, iOS to version 16.3, and iPadOS to version 16.3.
Where can I find more information about CVE-2023-28208?
For more information about CVE-2023-28208, you can visit the official Apple support pages: [Support Page 1](https://support.apple.com/en-us/HT213605) and [Support Page 2](https://support.apple.com/en-us/HT213606).