Lucene search

K
appleAppleAPPLE:988ED6F7E988E20835CC1DD49EC9FCF8
HistoryMar 27, 2023 - 12:00 a.m.

About the security content of Studio Display Firmware Update 16.4

2023-03-2700:00:00
support.apple.com
23
apple
security update
memory corruption
macos ventura 13.3
cve-2023-27965
pangu lab
firmware update

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

8.3

Confidence

High

EPSS

0.001

Percentile

28.4%

About the security content of Studio Display Firmware Update 16.4

This document describes the security content of Studio Display Firmware Update 16.4.

About Apple security updates

For our customers’ protection, Apple doesn’t disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available. Recent releases are listed on the Apple security updates page.

Apple security documents reference vulnerabilities by CVE-ID when possible.

For more information about security, see the Apple Product Security page.

Studio Display Firmware Update 16.4

Released March 27, 2023

Display

Available for: macOS Ventura 13.3 and later

Impact: An app may be able to execute arbitrary code with kernel privileges

Description: A memory corruption issue was addressed with improved state management.

CVE-2023-27965: Proteas of Pangu Lab

Information about products not manufactured by Apple, or independent websites not controlled or tested by Apple, is provided without recommendation or endorsement. Apple assumes no responsibility with regard to the selection, performance, or use of third-party websites or products. Apple makes no representations regarding third-party website accuracy or reliability. Contact the vendor for additional information.

Published Date: October 31, 2023

Affected configurations

Vulners
Node
applestudio_displayRange<16.4
VendorProductVersionCPE
applestudio_display*cpe:2.3:h:apple:studio_display:*:*:*:*:*:*:*:*

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

8.3

Confidence

High

EPSS

0.001

Percentile

28.4%

Related for APPLE:988ED6F7E988E20835CC1DD49EC9FCF8