CVE-2023-41061

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
07/09/2023
Last modified:
23/10/2025

Description

A validation issue was addressed with improved logic. This issue is fixed in watchOS 9.6.2, iOS 16.6.1 and iPadOS 16.6.1. A maliciously crafted attachment may result in arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* 16.6.1 (excluding)
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* 16.6.1 (excluding)
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* 9.6.2 (excluding)