An integer overflow was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, macOS Big Sur 11.7.5, macOS Monterey 12.6.4, tvOS 16.4, watchOS 9.4. Parsing a maliciously crafted plist may lead to an unexpected app termination or arbitrary code execution.
Metrics
Affected Vendors & Products
References
History
Wed, 29 Jan 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: apple
Published:
Updated: 2025-01-29T19:56:27.473Z
Reserved: 2023-03-08T00:00:00.000Z
Link: CVE-2023-27937

Updated: 2024-08-02T12:23:30.655Z

Status : Modified
Published: 2023-05-08T20:15:17.550
Modified: 2025-01-29T20:15:29.650
Link: CVE-2023-27937

No data.