U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2023-42915

Change History

CVE Modified by Apple Inc. 2/13/2024 10:15:13 PM

Action Type Old Value New Value
Removed CPE Configuration
AND
     OR
          *cpe:2.3:a:haxx:curl:*:*:*:*:*:*:*:* versions from (excluding) 8.4.0
     OR
          cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* versions from (including) 14.0 from (excluding) 14.2
          cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* versions from (including) 13.0 from (excluding) 13.6.4
          cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* versions from (excluding) 16.0 from (excluding) 16.7.5
          cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* versions from (excluding) 16.0 from (excluding) 16.7.5
          cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* versions from (including) 12.0 from (excluding) 12.7.3

								
						
Removed CVSS V3.1
NIST AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

								
						
Removed CWE
NIST NVD-CWE-noinfo

								
						
Changed Description
Multiple issues were addressed by updating to curl version 8.4.0. This issue is fixed in macOS Ventura 13.6.4, macOS Sonoma 14.2, macOS Monterey 12.7.3, iOS 16.7.5 and iPadOS 16.7.5. Multiple issues in curl.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Removed Reference
Apple Inc. http://seclists.org/fulldisclosure/2024/Jan/34

								
						
Removed Reference
Apple Inc. http://seclists.org/fulldisclosure/2024/Jan/37

								
						
Removed Reference
Apple Inc. http://seclists.org/fulldisclosure/2024/Jan/38

								
						
Removed Reference
Apple Inc. https://support.apple.com/en-us/HT214036

								
						
Removed Reference
Apple Inc. https://support.apple.com/en-us/HT214057

								
						
Removed Reference
Apple Inc. https://support.apple.com/en-us/HT214058

								
						
Removed Reference
Apple Inc. https://support.apple.com/en-us/HT214063

								
						
Removed Reference
Apple Inc. https://support.apple.com/kb/HT214036

								
						

CVE Rejected by Apple Inc. 2/13/2024 10:15:13 PM

Action Type Old Value New Value

CVE Translated by Apple Inc. 2/13/2024 10:15:13 PM

Action Type Old Value New Value
Removed Translation
Title: macOS Ventura, macOS Sonoma, macOS Monterey, iOS y iPadOS
Description: Se solucionaron varios problemas actualizando a la versión 8.4.0 de curl. Este problema se solucionó en macOS Ventura 13.6.4, macOS Sonoma 14.2, macOS Monterey 12.7.3, iOS 16.7.5 y iPadOS 16.7.5. Múltiples problemas en curl.