CVE-2023-40392: Race Condition
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Ventura 13.5. An app may be able to read sensitive location information.
Credit
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-40392?
The severity of CVE-2023-40392 is low.
How can I check if my macOS Ventura version is affected by CVE-2023-40392?
You can check if your macOS Ventura version is affected by CVE-2023-40392 by verifying that your version number is less than or equal to 13.5 (up to, but not including 13.5).
How can I check if my iOS version is affected by CVE-2023-40392?
You can check if your iOS version is affected by CVE-2023-40392 by verifying that your version number is less than or equal to 15.7.8 (up to, but not including 15.7.8).
How can I check if my iPadOS version is affected by CVE-2023-40392?
You can check if your iPadOS version is affected by CVE-2023-40392 by verifying that your version number is less than or equal to 15.7.8 (up to, but not including 15.7.8).
How can I fix CVE-2023-40392?
To fix CVE-2023-40392, update your macOS Ventura to version 13.5 or later.