CVE-2023-32365: Input Validation
Accessibility. A privacy issue was addressed with improved private data redaction for log entries.
Other sources
Accessibility. This issue was addressed with improved checks.
— Apple
Accounts. A permissions issue was addressed with improved redaction of sensitive information.
— Apple
Apple Neural Engine. The issue was addressed with improved memory handling.
— Apple
AppleMobileFileIntegrity. This issue was addressed with improved entitlements.
— Apple
Associated Domains. The issue was addressed with improved checks.
— Apple
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-32388
- CVE-2023-32400
- CVE-2023-34352
- CVE-2023-32425
- CVE-2023-32411
- CVE-2023-32371
- CVE-2023-32419
- CVE-2023-32399
- CVE-2023-28191
- CVE-2023-32392
- CVE-2023-32372
- CVE-2023-32384
- CVE-2023-32354
- CVE-2023-32420
- CVE-2023-27930
- CVE-2023-32398
- CVE-2023-32413
- CVE-2023-32352
- CVE-2023-29469
- CVE-2023-42869
- CVE-2023-32428
- CVE-2023-32407
- CVE-2023-32368
- CVE-2023-32403
- CVE-2023-32437
- CVE-2023-32385
- CVE-2023-32365
- CVE-2023-32390
- CVE-2023-32357
- CVE-2023-32367
- CVE-2023-32432
- CVE-2023-32391
- CVE-2023-32404
- CVE-2023-32394
- CVE-2023-32422
- CVE-2023-32376
- CVE-2023-28202
- CVE-2023-32412
- CVE-2023-32408
- CVE-2023-32415
- CVE-2023-32402
- CVE-2023-32423
- CVE-2023-32409
- CVE-2023-28204
- CVE-2023-32373
- CVE-2023-32389
- CVE-2023-23532
- CVE-2023-28181
- CVE-2023-32410
- CVE-2023-27940
- CVE-2023-32397
Frequently Asked Questions
What is CVE-2023-32365?
CVE-2023-32365 is a vulnerability in the Photos app on iOS and iPadOS devices that allowed a deleted photo to be re-surfaced without authentication.
How was CVE-2023-32365 fixed?
CVE-2023-32365 was fixed in iOS 15.7.6 and iPadOS 15.7.6, as well as iOS 16.5 and iPadOS 16.5, with improved checks in the Photos app.
What is the severity level of CVE-2023-32365?
The severity level of CVE-2023-32365 is low with a CVSS score of 2.4.
What Apple devices are affected by CVE-2023-32365?
CVE-2023-32365 affects iOS devices running iOS versions up to 15.7.6 and 16.5, as well as iPadOS devices running versions up to 15.7.6 and 16.5.
Where can I find more information about CVE-2023-32365?
You can find more information about CVE-2023-32365 on the Apple support website: [link](https://support.apple.com/en-us/HT213757) and [link](https://support.apple.com/en-us/HT213765).