Type Confusion Vulnerability Allows Arbitrary Code Execution with Kernel Privileges

Type Confusion Vulnerability Allows Arbitrary Code Execution with Kernel Privileges

CVE-2023-27930 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

A type confusion issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. An app may be able to execute arbitrary code with kernel privileges.

Learn more about our Cis Benchmark Audit For Apple Ios.