CVE-2023-42961 – Apple iOS/ iPadOS/ macOS Path Validation Sandbox Evasion Vulnerability

The following table lists the changes that have been made to the
CVE-2023-42961 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by [email protected]

    Apr. 11, 2025

    Action Type Old Value New Value
    Added Description A path handling issue was addressed with improved validation. This issue is fixed in iOS 17 and iPadOS 17, iOS 16.7 and iPadOS 16.7, macOS Sonoma 14, macOS Ventura 13.6, macOS Monterey 12.7. A sandboxed process may be able to circumvent sandbox restrictions.
    Added Reference https://support.apple.com/en-us/120328
    Added Reference https://support.apple.com/en-us/120329
    Added Reference https://support.apple.com/en-us/120337
    Added Reference https://support.apple.com/en-us/120949
    Added Reference https://support.apple.com/en-us/120950
Share the Post:

Related Posts