High severity7.8CISA KEVNVD Advisory· Published Jun 23, 2023· Updated Jun 17, 2026
CVE-2023-32434
CVE-2023-32434
Description
An integer overflow was addressed with improved input validation. This issue is fixed in watchOS 9.5.2, macOS Big Sur 11.7.8, iOS 15.7.7 and iPadOS 15.7.7, macOS Monterey 12.6.7, watchOS 8.8.1, iOS 16.5.1 and iPadOS 16.5.1, macOS Ventura 13.4.1. An app may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.7.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
11cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*range: <15.7.7
- (no CPE)range: <15.7.7, <16.5.1
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*range: >=11.0,<11.7.8
- (no CPE)range: <11.7.8, <12.6.7, <13.4.1
- (no CPE)range: unspecified
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*range: <8.8.1
- (no CPE)range: <8.8.1, <9.5.2
- (no CPE)range: unspecified
- Range: <15.7.7, <16.5.1
- Range: unspecified
Patches
Vulnerability mechanics
References
10- seclists.org/fulldisclosure/2023/Oct/20nvdMailing ListThird Party Advisory
- support.apple.com/en-us/HT213808nvdVendor Advisory
- support.apple.com/en-us/HT213809nvdVendor Advisory
- support.apple.com/en-us/HT213810nvdVendor Advisory
- support.apple.com/en-us/HT213811nvdVendor Advisory
- support.apple.com/en-us/HT213812nvdVendor Advisory
- support.apple.com/en-us/HT213813nvdVendor Advisory
- support.apple.com/en-us/HT213814nvdVendor Advisory
- support.apple.com/kb/HT213990nvdVendor Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
0No linked articles in our index yet.