An integer overflow was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, macOS Big Sur 11.7.5, macOS Monterey 12.6.4, tvOS 16.4, watchOS 9.4. Parsing a maliciously crafted plist may lead to an unexpected app termination or arbitrary code execution.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: apple
Published: 2023-05-08T00:00:00
Updated: 2024-08-02T12:23:30.655Z
Reserved: 2023-03-08T00:00:00
Link: CVE-2023-27937
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-05-08T20:15:17.550
Modified: 2024-11-21T07:53:44.260
Link: CVE-2023-27937
Redhat
No data.