← KEV catalog
CISA known exploited vulnerability

CVE-2023-41990

Apple Multiple Products Code Execution Vulnerability

SOURCE FACT

Apple · Multiple Products

Apple iOS, iPadOS, macOS, tvOS, and watchOS contain an unspecified vulnerability that allows for code execution when processing a font file.

Required action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

CISA notes

https://support.apple.com/en-us/HT213599, https://support.apple.com/en-us/HT213601, https://support.apple.com/en-us/HT213605, https://support.apple.com/en-us/HT213606, https://support.apple.com/en-us/HT213842, https://support.apple.com/en-us/HT213844, https://support.apple.com/en-us/HT213845 ; https://nvd.nist.gov/vuln/detail/CVE-2023-41990

View source evidence →

CHECK YOUR OUTSIDE-IN INVENTORY

Could this product be present?