CVE-2023-28826: Buffer Overflow
Accessibility. This issue was addressed with additional entitlement checks.
Other sources
Admin Framework. A logic issue was addressed with improved checks.
— Apple
Airport. This issue was addressed with improved redaction of sensitive information.
— Apple
AppleMobileFileIntegrity. A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions.
— Apple
ColorSync. The issue was addressed with improved memory handling.
— Apple
CoreCrypto. A timing side-channel issue was addressed with improvements to constant-time computation in cryptographic functions.
— Apple
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-30774
- CVE-2023-40444
- CVE-2023-42952
- CVE-2023-42945
- CVE-2023-41072
- CVE-2023-42857
- CVE-2023-40449
- CVE-2023-42823
- CVE-2023-41989
- CVE-2023-42854
- CVE-2023-40413
- CVE-2023-42834
- CVE-2023-42844
- CVE-2023-42953
- CVE-2023-40416
- CVE-2023-42848
- CVE-2023-40423
- CVE-2023-38403
- CVE-2023-42849
- CVE-2023-42850
- CVE-2023-40446
- CVE-2023-42942
- CVE-2023-42861
- CVE-2023-42935
- CVE-2023-40408
- CVE-2023-40405
- CVE-2023-28826
- CVE-2023-42856
- CVE-2023-40404
- CVE-2023-42859
- CVE-2023-42877
- CVE-2023-42840
- CVE-2023-42853
- CVE-2023-42860
- CVE-2023-42889
- CVE-2023-42847
- CVE-2023-42845
- CVE-2023-42841
- CVE-2023-42873
- CVE-2023-42838
- CVE-2023-42835
- CVE-2023-41977
- CVE-2023-42438
- CVE-2023-42836
- CVE-2023-42839
- CVE-2023-42878
- CVE-2023-41982
- CVE-2023-41997
- CVE-2023-41988
- CVE-2023-42946
- CVE-2023-36191
- CVE-2023-40421
- CVE-2023-42842
- CVE-2023-4733
- CVE-2023-4734
- CVE-2023-4735
- CVE-2023-4736
- CVE-2023-4738
- CVE-2023-4750
- CVE-2023-4751
- CVE-2023-4752
- CVE-2023-4781
- CVE-2023-41254
- CVE-2023-40447
- CVE-2023-41976
- CVE-2023-42852
- CVE-2023-42843
- CVE-2023-41983
- CVE-2023-41975
- CVE-2023-42858
- CVE-2024-23276
- CVE-2024-23227
- CVE-2024-23269
- CVE-2024-23247
- CVE-2024-23218
- CVE-2024-23299
- CVE-2024-23244
- CVE-2024-23270
- CVE-2024-23286
- CVE-2024-23257
- CVE-2024-23234
- CVE-2024-23266
- CVE-2024-23265
- CVE-2024-23225
- CVE-2024-23201
- CVE-2024-23264
- CVE-2024-23283
- CVE-2024-23274
- CVE-2024-23268
- CVE-2024-23275
- CVE-2024-23267
- CVE-2024-23216
- CVE-2024-23230
- CVE-2024-23204
- CVE-2024-23245
- CVE-2024-23272
- CVE-2023-40389
- CVE-2024-23229
- CVE-2024-23278
- CVE-2024-23231
- CVE-2024-23203
- CVE-2024-23217
- CVE-2024-23262
- CVE-2024-23235
- CVE-2024-23259
- CVE-2024-23289
- CVE-2024-23246
- CVE-2024-23284
- CVE-2024-23263
Frequently Asked Questions
What is the severity of CVE-2023-28826?
The severity of CVE-2023-28826 is classified as moderate due to the potential exposure of sensitive information.
How do I fix CVE-2023-28826?
To fix CVE-2023-28826, update your device to iOS 16.7.6 or iPadOS 16.7.6.
What devices are affected by CVE-2023-28826?
CVE-2023-28826 affects iOS and iPadOS versions prior to 16.7.6 and macOS versions prior to 12.7.4.
Is CVE-2023-28826 related to sensitive information exposure?
Yes, CVE-2023-28826 addresses an issue with the improper redaction of sensitive information.
When was CVE-2023-28826 reported?
CVE-2023-28826 was reported and fixed in March 2024.