CVE-2023-23528
https://notcve.org/view.php?id=CVE-2023-23528
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in tvOS 16.4, iOS 16.4 and iPadOS 16.4. Processing a maliciously crafted Bluetooth packet may result in disclosure of process memory. • https://support.apple.com/en-us/HT213674 https://support.apple.com/en-us/HT213676 • CWE-125: Out-of-bounds Read •
CVE-2023-23526
https://notcve.org/view.php?id=CVE-2023-23526
This was addressed with additional checks by Gatekeeper on files downloaded from an iCloud shared-by-me folder. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4. A file from an iCloud shared-by-me folder may be able to bypass Gatekeeper. • https://support.apple.com/en-us/HT213670 https://support.apple.com/en-us/HT213676 •
CVE-2023-23523
https://notcve.org/view.php?id=CVE-2023-23523
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4. Photos belonging to the Hidden Photos Album could be viewed without authentication through Visual Lookup. • https://support.apple.com/en-us/HT213670 https://support.apple.com/en-us/HT213676 •
CVE-2023-23525
https://notcve.org/view.php?id=CVE-2023-23525
This issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, macOS Big Sur 11.7.5. An app may be able to gain root privileges. • https://support.apple.com/en-us/HT213670 https://support.apple.com/en-us/HT213675 https://support.apple.com/en-us/HT213676 •
CVE-2023-23541
https://notcve.org/view.php?id=CVE-2023-23541
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 15.7.4 and iPadOS 15.7.4, iOS 16.4 and iPadOS 16.4. An app may be able to access information about a user’s contacts. • https://support.apple.com/en-us/HT213673 https://support.apple.com/en-us/HT213676 •