A
permissions issue was addressed with additional restrictions. This issue is fixed in tvOS 17.1, watchOS 10.1, macOS Sonoma 14.1, iOS 17.1 and iPadOS 17.1. An app may be able to access sensitive user data.
References
| Link | Resource |
|---|---|
| https://support.apple.com/en-us/HT213982 | Vendor Advisory |
| https://support.apple.com/en-us/HT213984 | Vendor Advisory |
| https://support.apple.com/en-us/HT213987 | Vendor Advisory |
| https://support.apple.com/en-us/HT213988 | Vendor Advisory |
| https://support.apple.com/en-us/HT213982 | Vendor Advisory |
| https://support.apple.com/en-us/HT213984 | Vendor Advisory |
| https://support.apple.com/en-us/HT213987 | Vendor Advisory |
| https://support.apple.com/en-us/HT213988 | Vendor Advisory |
| https://support.apple.com/kb/HT213982 | |
| https://support.apple.com/kb/HT213984 | |
| https://support.apple.com/kb/HT213988 |
Configurations
Configuration 1 (hide)
|
History
04 Nov 2025, 20:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
05 Dec 2024, 19:52
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:14.0:*:*:*:*:*:*:* cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* |
|
| CWE | CWE-276 | |
| References | () https://support.apple.com/en-us/HT213982 - Vendor Advisory | |
| References | () https://support.apple.com/en-us/HT213984 - Vendor Advisory | |
| References | () https://support.apple.com/en-us/HT213987 - Vendor Advisory | |
| References | () https://support.apple.com/en-us/HT213988 - Vendor Advisory | |
| First Time |
Apple ipad Os
Apple macos Apple tvos Apple iphone Os Apple Apple watchos |
21 Nov 2024, 08:23
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://support.apple.com/en-us/HT213982 - | |
| References | () https://support.apple.com/en-us/HT213984 - | |
| References | () https://support.apple.com/en-us/HT213987 - | |
| References | () https://support.apple.com/en-us/HT213988 - |
07 Nov 2024, 16:35
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
Information
Published : 2024-02-21 07:15
Updated : 2025-11-04 20:17
NVD link : CVE-2023-42953
Mitre link : CVE-2023-42953
CVE.ORG link : CVE-2023-42953
JSON object : View
CWE
CWE-276
Incorrect Default Permissions