Medium severity5.3NVD Advisory· Published Oct 25, 2023· Updated Jun 17, 2026
CVE-2023-42846
CVE-2023-42846
Description
This issue was addressed by removing the vulnerable code. This issue is fixed in watchOS 10.1, iOS 16.7.2 and iPadOS 16.7.2, tvOS 17.1, iOS 17.1 and iPadOS 17.1. A device may be passively tracked by its Wi-Fi MAC address.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
11cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*range: <16.7.2
- (no CPE)range: prior to 16.7.2, prior to 17.1
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*range: <17.1
- (no CPE)range: prior to 17.1
- (no CPE)range: unspecified
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*range: <10.1
- (no CPE)range: prior to 10.1
- (no CPE)range: unspecified
- Range: prior to 16.7.2, prior to 17.1
- Range: unspecified
Patches
Vulnerability mechanics
References
12- seclists.org/fulldisclosure/2023/Oct/19nvdMailing ListThird Party Advisory
- seclists.org/fulldisclosure/2023/Oct/22nvdMailing ListThird Party Advisory
- seclists.org/fulldisclosure/2023/Oct/23nvdMailing ListThird Party Advisory
- seclists.org/fulldisclosure/2023/Oct/25nvdMailing ListThird Party Advisory
- support.apple.com/en-us/HT213981nvdRelease NotesVendor Advisory
- support.apple.com/en-us/HT213982nvdRelease NotesVendor Advisory
- support.apple.com/en-us/HT213987nvdRelease NotesVendor Advisory
- support.apple.com/en-us/HT213988nvdRelease NotesVendor Advisory
- support.apple.com/kb/HT213981nvdRelease NotesVendor Advisory
- support.apple.com/kb/HT213982nvdRelease NotesVendor Advisory
- support.apple.com/kb/HT213987nvdRelease NotesVendor Advisory
- support.apple.com/kb/HT213988nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.