CyberICT

CVE-2023-41974

Apple · Published January 10, 2024

CVSS v3.1

HIGH
Patch availableGet patch

Description

A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS 17, iOS 15.8.7 and iPadOS 15.8.7. An app may be able to execute arbitrary code with kernel privileges.

Affected Products

  • Ipados < 15.8.7
  • Ipados < 17.0
  • Iphone OS < 15.8.7
  • Iphone OS < 17.0

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H