CVE-2023-32425: High severity apple ios, ipados, and watchos vulnerability
Accessibility. A privacy issue was addressed with improved private data redaction for log entries.
Other sources
Accessibility. This issue was addressed with improved checks.
— Apple
Accounts. A permissions issue was addressed with improved redaction of sensitive information.
— Apple
Apple Neural Engine. The issue was addressed with improved memory handling.
— Apple
The issue was addressed with improved memory handling. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5. An app may be able to gain elevated privileges.
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-32388
- CVE-2023-32400
- CVE-2023-34352
- CVE-2023-32425
- CVE-2023-32399
- CVE-2023-28191
- CVE-2023-32417
- CVE-2023-32392
- CVE-2023-32372
- CVE-2023-32384
- CVE-2023-32354
- CVE-2023-32420
- CVE-2023-27930
- CVE-2023-32398
- CVE-2023-32413
- CVE-2023-32352
- CVE-2023-32428
- CVE-2023-32407
- CVE-2023-32368
- CVE-2023-32403
- CVE-2023-32437
- CVE-2023-32390
- CVE-2023-32357
- CVE-2023-32432
- CVE-2023-32391
- CVE-2023-32404
- CVE-2023-32394
- CVE-2023-32422
- CVE-2023-32376
- CVE-2023-28202
- CVE-2023-32412
- CVE-2023-32408
- CVE-2023-32402
- CVE-2023-32423
- CVE-2023-32409
- CVE-2023-28204
- CVE-2023-32373
- CVE-2023-32389
- CVE-2023-32411
- CVE-2023-32371
- CVE-2023-32419
- CVE-2023-29469
- CVE-2023-42869
- CVE-2023-32385
- CVE-2023-32365
- CVE-2023-32367
- CVE-2023-32415
- CVE-2023-23532
- CVE-2023-28181
- CVE-2023-32410
- CVE-2023-27940
- CVE-2023-32397
Frequently Asked Questions
What is the severity of CVE-2023-32425?
The severity of CVE-2023-32425 is high (7.8).
How was CVE-2023-32425 fixed?
CVE-2023-32425 was fixed with improved memory handling in iOS 16.5 and iPadOS 16.5, watchOS 9.5.
Which Apple products are affected by CVE-2023-32425?
The affected products include Apple watchOS (up to version 9.5), Apple iOS (up to version 16.5), and Apple iPadOS (up to version 16.5).
Can an app gain elevated privileges through CVE-2023-32425?
Yes, an app may be able to gain elevated privileges through CVE-2023-32425.
Where can I find more information about CVE-2023-32425?
You can find more information about CVE-2023-32425 on the Apple support website.