CVE-2023-40394: Input Validation
Accessibility. A privacy issue was addressed with improved private data redaction for log entries.
Other sources
Accounts. A privacy issue was addressed with improved private data redaction for log entries.
— Apple
Apple Neural Engine. The issue was addressed with improved memory handling.
— Apple
CFNetwork. A privacy issue was addressed with improved private data redaction for log entries.
— Apple
Find My. A logic issue was addressed with improved restrictions.
— Apple
Find My. A privacy issue was addressed with improved private data redaction for log entries.
— Apple
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-40442
- CVE-2023-40439
- CVE-2023-34425
- CVE-2023-38136
- CVE-2023-38580
- CVE-2023-40392
- CVE-2023-40437
- CVE-2023-32416
- CVE-2022-3970
- CVE-2023-38590
- CVE-2023-38598
- CVE-2023-36495
- CVE-2023-38604
- CVE-2023-32734
- CVE-2023-32441
- CVE-2023-38261
- CVE-2023-38424
- CVE-2023-38425
- CVE-2023-38606
- CVE-2023-32381
- CVE-2023-32433
- CVE-2023-35993
- CVE-2023-41995
- CVE-2023-38410
- CVE-2023-38603
- CVE-2023-40400
- CVE-2023-38565
- CVE-2023-38593
- CVE-2023-40394
- CVE-2023-32437
- CVE-2023-38605
- CVE-2023-40397
- CVE-2023-38599
- CVE-2023-32445
- CVE-2023-38592
- CVE-2023-38572
- CVE-2023-38594
- CVE-2023-38595
- CVE-2023-38600
- CVE-2023-38611
- CVE-2023-37450
- CVE-2023-42866
- CVE-2023-38597
- CVE-2023-38133
- CVE-2023-43000
Frequently Asked Questions
What is CVE-2023-40394?
CVE-2023-40394 is a vulnerability related to logging in Apple iOS and iPadOS where improved validation of environment variables has been implemented to address the issue.
What is the severity of CVE-2023-40394?
The severity of CVE-2023-40394 has not been specified.
Which software products are affected by CVE-2023-40394?
CVE-2023-40394 affects Apple iOS and iPadOS versions up to, but not including, version 16.6.
How can I fix CVE-2023-40394?
To fix CVE-2023-40394, it is recommended to update to Apple iOS or iPadOS version 16.6 or later, as the issue has been addressed in this version.
Where can I find more information about CVE-2023-40394?
More information about CVE-2023-40394 can be found in the official Apple security advisory at the following link: https://support.apple.com/en-us/HT213841