CVE-2023-42941: Medium severity Apple iOS and iPadOS vulnerability
Accessibility. A privacy issue was addressed with improved private data redaction for log entries.
Other sources
Accounts. A privacy issue was addressed with improved private data redaction for log entries.
— Apple
Assets. An issue was addressed with improved handling of temporary files.
— Apple
AVEVideoEncoder. This issue was addressed with improved redaction of sensitive information.
— Apple
Bluetooth. The issue was addressed with improved checks.
— Apple
The issue was addressed with improved checks. This issue is fixed in iOS 17.2 and iPadOS 17.2. An attacker in a privileged network position may be able to perform a denial-of-service attack using crafted Bluetooth packets.
— MITRE
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-42937
- CVE-2023-42919
- CVE-2023-42896
- CVE-2023-42884
- CVE-2023-45866
- CVE-2023-42941
- CVE-2023-42962
- CVE-2023-42922
- CVE-2023-42898
- CVE-2023-42899
- CVE-2023-42888
- CVE-2023-42974
- CVE-2023-42914
- CVE-2023-42893
- CVE-2023-42923
- CVE-2023-42936
- CVE-2023-42897
- CVE-2023-42947
- CVE-2023-40389
- CVE-2023-42890
- CVE-2023-42883
- CVE-2023-42950
- CVE-2023-42956
- CVE-2023-43010
Frequently Asked Questions
What is the severity of CVE-2023-42941?
CVE-2023-42941 is a vulnerability that allows an attacker in a privileged network position to execute a denial-of-service attack.
How do I fix CVE-2023-42941?
To fix CVE-2023-42941, update your device to iOS 17.2 or iPadOS 17.2.
What versions of Apple software are affected by CVE-2023-42941?
CVE-2023-42941 affects versions prior to iOS 17.2 and iPadOS 17.2.
What type of attack is enabled by CVE-2023-42941?
CVE-2023-42941 enables denial-of-service attacks through crafted Bluetooth packets.
When was CVE-2023-42941 addressed?
CVE-2023-42941 was addressed in the updates released for iOS 17.2 and iPadOS 17.2.