CVE-2023-40389: Buffer Overflow
Accessibility. A privacy issue was addressed with improved private data redaction for log entries.
Other sources
Accessibility. This issue was addressed with improved state management.
— Apple
Accounts. A privacy issue was addressed with improved private data redaction for log entries.
— Apple
Admin Framework. A logic issue was addressed with improved checks.
— Apple
Airport. This issue was addressed with improved redaction of sensitive information.
— Apple
AppleEvents. This issue was addressed with improved redaction of sensitive information.
— Apple
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-42874
- CVE-2023-42937
- CVE-2023-42919
- CVE-2023-42894
- CVE-2023-42901
- CVE-2023-42902
- CVE-2023-42912
- CVE-2023-42903
- CVE-2023-42904
- CVE-2023-42905
- CVE-2023-42906
- CVE-2023-42907
- CVE-2023-42908
- CVE-2023-42909
- CVE-2023-42910
- CVE-2023-42911
- CVE-2023-42926
- CVE-2023-42882
- CVE-2023-42881
- CVE-2023-42924
- CVE-2023-42896
- CVE-2023-42884
- CVE-2023-45866
- CVE-2023-42900
- CVE-2023-42886
- CVE-2023-38545
- CVE-2023-38039
- CVE-2023-38546
- CVE-2023-42931
- CVE-2023-42892
- CVE-2023-42922
- CVE-2023-42898
- CVE-2023-42899
- CVE-2023-42888
- CVE-2023-42891
- CVE-2023-42974
- CVE-2023-42914
- CVE-2023-42893
- CVE-2023-3618
- CVE-2020-19185
- CVE-2020-19186
- CVE-2020-19187
- CVE-2020-19188
- CVE-2020-19189
- CVE-2020-19190
- CVE-2023-42887
- CVE-2023-42936
- CVE-2023-40390
- CVE-2023-42842
- CVE-2023-42930
- CVE-2023-42913
- CVE-2023-42932
- CVE-2023-42947
- CVE-2023-40389
- CVE-2023-5344
- CVE-2023-42890
- CVE-2023-42883
- CVE-2023-42950
- CVE-2023-42956
- CVE-2023-42916
- CVE-2023-42917
- CVE-2024-23276
- CVE-2024-23227
- CVE-2024-23269
- CVE-2024-23247
- CVE-2024-23218
- CVE-2024-23299
- CVE-2024-23244
- CVE-2024-23270
- CVE-2024-23286
- CVE-2024-23257
- CVE-2024-23234
- CVE-2024-23266
- CVE-2024-23265
- CVE-2024-23225
- CVE-2024-23201
- CVE-2023-28826
- CVE-2024-23264
- CVE-2024-23283
- CVE-2024-23274
- CVE-2024-23268
- CVE-2024-23275
- CVE-2024-23267
- CVE-2024-23216
- CVE-2024-23230
- CVE-2024-23204
- CVE-2024-23245
- CVE-2024-23272
- CVE-2024-23229
- CVE-2024-23278
- CVE-2024-23231
- CVE-2024-23203
- CVE-2024-23217
- CVE-2023-42941
- CVE-2023-42962
- CVE-2023-42923
- CVE-2023-42897
- CVE-2023-43010
Frequently Asked Questions
What is the severity of CVE-2023-40389?
CVE-2023-40389 has been categorized with a critical severity due to its potential impact on sensitive data handling.
How do I fix CVE-2023-40389?
To mitigate CVE-2023-40389, users should update their affected Apple products to the specified patched versions.
Which products are affected by CVE-2023-40389?
CVE-2023-40389 affects several Apple products, including various versions of macOS, watchOS, iOS, iPadOS, and tvOS.
What types of vulnerabilities does CVE-2023-40389 address?
CVE-2023-40389 addresses logic issues and redaction of sensitive information among others.
Is there a workaround for CVE-2023-40389 until a patch is applied?
No specific workaround for CVE-2023-40389 has been provided, so applying the update is strongly recommended.