CVE-2023-32367
https://notcve.org/view.php?id=CVE-2023-32367
This issue was addressed with improved entitlements. This issue is fixed in iOS 16.5 and iPadOS 16.5, macOS Ventura 13.4. An app may be able to access user-sensitive data. • https://support.apple.com/en-us/HT213757 https://support.apple.com/en-us/HT213758 •
CVE-2023-32365
https://notcve.org/view.php?id=CVE-2023-32365
The issue was addressed with improved checks. This issue is fixed in iOS 15.7.6 and iPadOS 15.7.6, iOS 16.5 and iPadOS 16.5. Shake-to-undo may allow a deleted photo to be re-surfaced without authentication. • https://support.apple.com/en-us/HT213757 https://support.apple.com/en-us/HT213765 •
CVE-2023-27930
https://notcve.org/view.php?id=CVE-2023-27930
A type confusion issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. An app may be able to execute arbitrary code with kernel privileges. • https://support.apple.com/en-us/HT213757 https://support.apple.com/en-us/HT213758 https://support.apple.com/en-us/HT213761 https://support.apple.com/en-us/HT213764 • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •
CVE-2023-32371
https://notcve.org/view.php?id=CVE-2023-32371
The issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, macOS Ventura 13.4. An app may be able to break out of its sandbox. • https://support.apple.com/en-us/HT213757 https://support.apple.com/en-us/HT213758 •
CVE-2023-28202
https://notcve.org/view.php?id=CVE-2023-28202
This issue was addressed with improved state management. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. An app firewall setting may not take effect after exiting the Settings app. • https://support.apple.com/en-us/HT213757 https://support.apple.com/en-us/HT213758 https://support.apple.com/en-us/HT213761 https://support.apple.com/en-us/HT213764 •