Lucene search

K
cvelistAppleCVELIST:CVE-2023-32401
HistoryJan 10, 2024 - 10:03 p.m.

CVE-2023-32401

2024-01-1022:03:08
apple
www.cve.org
buffer overflow
macos updates
parsing office doc
code execution

8.8 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

38.6%

A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.6.6, macOS Big Sur 11.7.7, macOS Ventura 13.4. Parsing an office document may lead to an unexpected app termination or arbitrary code execution.

CNA Affected

[
  {
    "vendor": "Apple",
    "product": "macOS",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected",
        "lessThan": "13.4",
        "versionType": "custom"
      }
    ]
  },
  {
    "vendor": "Apple",
    "product": "macOS",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected",
        "lessThan": "12.6",
        "versionType": "custom"
      }
    ]
  },
  {
    "vendor": "Apple",
    "product": "macOS",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected",
        "lessThan": "11.7",
        "versionType": "custom"
      }
    ]
  }
]

8.8 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

38.6%

Related for CVELIST:CVE-2023-32401