High severity7.8CISA KEVNVD Advisory· Published Sep 7, 2023· Updated Jun 17, 2026
CVE-2023-41061
CVE-2023-41061
Description
A validation issue was addressed with improved logic. This issue is fixed in watchOS 9.6.2, iOS 16.6.1 and iPadOS 16.6.1. A maliciously crafted attachment may result in arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*range: <16.6.1
- (no CPE)range: <16.6.1
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*range: <9.6.2
- (no CPE)range: <9.6.2
- (no CPE)range: unspecified
- Range: <16.6.1
- Range: unspecified
Patches
Vulnerability mechanics
References
7- seclists.org/fulldisclosure/2023/Sep/4nvdMailing ListThird Party Advisory
- seclists.org/fulldisclosure/2023/Sep/5nvdMailing ListThird Party Advisory
- support.apple.com/en-us/HT213905nvdVendor Advisory
- support.apple.com/en-us/HT213907nvdVendor Advisory
- support.apple.com/kb/HT213905nvdVendor Advisory
- support.apple.com/kb/HT213907nvdVendor Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
0No linked articles in our index yet.