CVE-2023-42824PoC(apple / ipados)

LOWCVSS 7.8 · HIGHCISA KEV

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

The issue was addressed with improved checks. This issue is fixed in iOS 16.7.1 and iPadOS 16.7.1. A local attacker may be able to elevate their privileges. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.6.

1.5/ 10 priority

Sources & remediation

Listed in the CISA Known Exploited Vulnerabilities catalog. Federal remediation due date: 2023-10-26. Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Priority

LOW

Exploitation

ACTIVE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • ipados
  • iphone_os

Threat summary

  • Public PoC is present in monitored signal
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • General: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-02-14); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
ipadosiphone_os

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-02-14: 1Mentions · 2026-08-23: 1PoC Mentioned / Linked · 2026-02-14: 102-1408-23
Signal classification2 categories
PoC
150.0%
General
150.0%
Classification over time
DateTotalLabels
2026-02-141
PoC1
2026-08-231
General1
Full discourse2 posts
  • xcbjkymz@xcbjkymz
    PoC

    GitHub - 619555798/cve-2023-42824: cow bypass I saw this ios poc on GitHub is this true? really? https://t.co/cmb9whal7p

    Post summary

    The tweet reports seeing an iOS proof‑of‑concept for CVE‑2023‑42824 on GitHub and asks if it is real.

    10010185
    2 followersView on X
  • (˶ᵔ ᵕ ᵔ˶)@minjusjellyfish
    General

    @aersatine Girl CVE-2023-42824 is likely present 😭😭😭😭😭

    Post summary

    The tweet only mentions the existence of CVE-2023-42824 without providing further technical, exploit, or mitigation details.

    1000033
    80 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
OSappleipados---
OSappleiphone_os---

Explore more