A certificate validation issue was addressed. This issue is fixed in macOS Ventura 13.6, iOS 16.7 and iPadOS 16.7. A malicious app may be able to bypass signature validation. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7.
Metrics
Affected Vendors & Products
References
History
Tue, 04 Feb 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
ssvc
|
Mon, 03 Feb 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
kev
|

Status: PUBLISHED
Assigner: apple
Published: 2023-09-21T18:23:48.974Z
Updated: 2025-02-04T15:15:22.417Z
Reserved: 2023-09-06T17:40:06.142Z
Link: CVE-2023-41991

Updated: 2024-08-02T19:16:49.649Z

Status : Analyzed
Published: 2023-09-21T19:15:11.283
Modified: 2025-02-10T17:53:40.387
Link: CVE-2023-41991

No data.