CVE-2023-41974
KEVHIGH 7.8EPSS 1.4%
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS 17. An app may be able to execute arbitrary code with kernel privileges.
- CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H - CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H - EPSS
- 1.41% chance of exploitation in the next 30 days, 71th percentile
- CISA KEV
- added 2026-03-05
- Published
- 2024-01-10
- Updated
- 2026-03-12
Proof-of-concept exploits (4)
- https://cloud.google.com/blog/topics/threat-intelligence/coruna-powerful-ios-exploit-kit
- Lrdsnow/PureKFD840★ · 2024-11-23
- Lrdsnow/PureKFDLinux6★ · 2024-10-19
- felix-pb/kfd1011★ · 2024-01-21