{
  "crds_version": "0.1",
  "kind": "base",
  "id": "crds:cve-2023-32434",
  "revision": 1,
  "title": "Apple — an app reaching kernel privileges",
  "summary": "An integer overflow lets an app execute code with kernel privileges on an Apple device. Apple closed it with stricter input validation and reports attacks against builds released before iOS 15.7.",
  "source_type": "cve",
  "severity": "high",
  "cvss": {
    "score": 7.8,
    "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
    "version": "3.1"
  },
  "epss": 0.51517,
  "exploitation": {
    "known_exploited": true,
    "exploit_available": false,
    "attack_complexity": "low",
    "kev_added": "2023-06-23",
    "prerequisites": "The attacker must get an app onto the device."
  },
  "remediation": {
    "patch_available": true,
    "fixed_in": [
      "iOS 16.5.1",
      "iOS 15.7.7",
      "macOS Ventura 13.4.1",
      "macOS Monterey 12.6.7",
      "macOS Big Sur 11.7.8"
    ]
  },
  "mitre_attack": [
    "T1068"
  ],
  "kill_chain": "privilege_escalation",
  "recommended_action": "Update to iOS and iPadOS 16.5.1 or 15.7.7, macOS Ventura 13.4.1, Monterey 12.6.7 or Big Sur 11.7.8, plus watchOS 9.5.2 or 8.8.1.",
  "confidence": "medium",
  "provenance": [
    {
      "fields": [
        "cvss",
        "exploitation.attack_complexity",
        "exploitation.exploit_available",
        "references",
        "published_at"
      ],
      "source": "https://nvd.nist.gov/vuln/detail/CVE-2023-32434",
      "retrieved_at": "2026-09-24T12:52:19.575Z",
      "confidence": "high",
      "extractor": "scrty-crds-pipeline/0.1"
    },
    {
      "fields": [
        "exploitation.known_exploited",
        "exploitation.kev_added"
      ],
      "source": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
      "retrieved_at": "2026-09-24T12:52:19.575Z",
      "confidence": "high",
      "extractor": "scrty-crds-pipeline/0.1"
    },
    {
      "fields": [
        "epss"
      ],
      "source": "https://api.first.org/data/v1/epss?cve=CVE-2023-32434",
      "retrieved_at": "2026-09-24T12:52:19.575Z",
      "confidence": "high",
      "extractor": "scrty-crds-pipeline/0.1"
    },
    {
      "fields": [
        "title",
        "summary",
        "severity",
        "remediation",
        "mitre_attack",
        "kill_chain",
        "recommended_action",
        "confidence",
        "tags",
        "exploitation.prerequisites"
      ],
      "source": "https://nvd.nist.gov/vuln/detail/CVE-2023-32434",
      "retrieved_at": "2026-09-24T12:52:19.575Z",
      "confidence": "high",
      "extractor": "claude-code"
    }
  ],
  "references": [
    {
      "type": "cve",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32434",
      "label": "NVD record"
    },
    {
      "type": "cisa",
      "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
      "label": "CISA Known Exploited Vulnerabilities catalog"
    },
    {
      "type": "vendor_advisory",
      "url": "https://support.apple.com/en-us/HT213808"
    },
    {
      "type": "vendor_advisory",
      "url": "https://support.apple.com/en-us/HT213809"
    },
    {
      "type": "vendor_advisory",
      "url": "https://support.apple.com/en-us/HT213810"
    }
  ],
  "published_at": "2023-06-23T18:15:13.720Z",
  "issued_at": "2026-09-24T12:52:19.575Z",
  "tags": [
    "apple",
    "ios",
    "macos",
    "kernel",
    "integer-overflow",
    "kev"
  ]
}
