VDB
CVE-2023-40437
CVE-2023-40437
PUBLISHED
CVSS 5.5 MEDIUM
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 16.6 and iPadOS 16.6, macOS Ventura 13.5. An app may be able to read sensitive location information.
EPSS 0.21% · 9.6th percentile
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS Score
0.21%
9.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | macOS | unspecified |
| apple | iphone_os | 0 |
| Apple | iOS and iPadOS | unspecified |
| apple | macos | 0 |
| apple | ipados | 0 |
Timeline
- Jan 10, 2024 CVE Published
- Jan 17, 2024 EPSS Score
- Feb 14, 2024 EPSS Score
- Mar 14, 2024 EPSS Score
- Apr 11, 2024 EPSS Score
- May 9, 2024 EPSS Score
- Jun 7, 2024 EPSS Score
- Jul 5, 2024 EPSS Score
- Aug 2, 2024 EPSS Score
- Aug 31, 2024 EPSS Score
- Sep 28, 2024 EPSS Score
- Oct 26, 2024 EPSS Score