VDB
CVE-2023-40418
CVE-2023-40418
PUBLISHED
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to delete files for which it does not have permission.
EPSS 0.13% · 32.2th percentile
Risk Scores
EPSS Score
0.13%
32.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | tvOS | * |
| Apple | iOS and iPadOS | unspecified, unspecified |
| Apple | watchOS | unspecified |
| Apple | macOS | unspecified, unspecified, unspecified |
Exploit Intelligence
- https://support.apple.com/kb/HT213940 (circl)
- https://support.apple.com/kb/HT213936 (circl)
- https://support.apple.com/kb/HT213937 (circl)
- https://support.apple.com/kb/HT213938 (circl)
- https://support.apple.com/kb/HT213927 (circl)
- https://support.apple.com/kb/HT213931 (circl)
- https://support.apple.com/kb/HT213932 (circl)
- https://support.apple.com/en-us/HT213940 (circl)
- http://seclists.org/fulldisclosure/2023/Oct/10 (circl)
- http://seclists.org/fulldisclosure/2023/Oct/6 (circl)
…and 10 more exploits
Timeline
- Sep 26, 2023 CVE Published
- Sep 27, 2023 EPSS Score
- Oct 29, 2023 EPSS Score
- Nov 30, 2023 EPSS Score
- Jan 1, 2024 EPSS Score
- Feb 2, 2024 EPSS Score
- Mar 5, 2024 EPSS Score
- Apr 6, 2024 EPSS Score
- May 8, 2024 EPSS Score
- Jun 8, 2024 EPSS Score
- Jul 10, 2024 EPSS Score
- Aug 11, 2024 EPSS Score
References
- https://support.apple.com/en-us/HT213936 advisory
- https://support.apple.com/en-us/HT213939 advisory
- https://support.apple.com/en-us/HT213941 advisory
- https://support.apple.com/en-us/HT213940 advisory
- https://support.apple.com/en-us/HT213937 advisory
- https://support.apple.com/en-us/HT213938 advisory
- https://support.apple.com/en-us/HT213932 url
- https://support.apple.com/en-us/HT213927 url
- https://support.apple.com/en-us/HT213931 url
- http://seclists.org/fulldisclosure/2023/Oct/5 url
- http://seclists.org/fulldisclosure/2023/Oct/10 url
- http://seclists.org/fulldisclosure/2023/Oct/6 url
- http://seclists.org/fulldisclosure/2023/Oct/8 url
- http://seclists.org/fulldisclosure/2023/Oct/3 url
- http://seclists.org/fulldisclosure/2023/Oct/4 url
- https://support.apple.com/kb/HT213940 url
- https://support.apple.com/kb/HT213932 url
- https://support.apple.com/kb/HT213931 url
- https://support.apple.com/kb/HT213927 url
- https://support.apple.com/kb/HT213938 url
…and 2 more