SecPod

Learn Search

Search across all Learn content

← Back to Security Research
Apple’s December 2023 Updates Addresses Multiple Security Vulnerabilities!

Apple’s December 2023 Updates Addresses Multiple Security Vulnerabilities!

Dec 18, 2023By Mohammad Faizel3 min read

Apple’s Security Alert for December 2023 recently released multiple updates to patch eight Apple products affected by multiple vulnerabilities. An attacker who successfully exploits these flaws could therefore compromise the affected device, leading to arbitrary code execution and a denial-of-service (DoS) condition.

The security updates published address multiple issues in macOS (macOS Sonoma, macOS Monterey, and macOS Ventura) and two vulnerabilities were also fixed in Apple Safari.

Apple’s Security Alert December 2023 Updates Summary:

1. Safari

    • Affected OS: macOS Monterey
    • Affected features: WebKit
    • Impact: Arbitrary Code Execution

2. macOS

*macOS Ventura

    • Affected OS: macOS Ventura before 13.6.3
    • Affected features: Accounts, Apple AVE Video Encoder Events, Archive Utility, Core Services, Find My, ImageIO, IOKit, Kernel, TCC, and Vim.
    • Impact: Arbitrary Code Execution and Denial-of-Service.

*macOS Monterey

    • Affected OS: macOS Monterey before 12.7.2.
    • Affected features: Accounts, Apple Events, Core Services, Find My, IOKit, Kernel, TCC, and Vim.
    • Impact: Arbitrary Code Execution and Sensitive Information Disclosure.

*macOS Sonoma

    • Affected OS: macOS Sonoma before 14.2
    • Affected features: Accessibility, Accounts, Apple Events, Apple Graphics Control,  Apple VA, Archive Utility, AVE Video Encoder, Bluetooth, Core Media Playback, Core Services, Extension Kit, Find My, Image IO, IO Kit, Kernel, Shared File List, TCC, Vim,  WebKit.   

3. iOS and iPadOS

* iOS 17.2 and iPadOS 17.2

* iOS 16.7.3 and iPadOS 16.7.3.

4. watchOS

*watchOS 10.2

5. tvOS

*

tvOS 17.2

Above is the list of products affected in Apple’s December Security Alert.

SanerNow VM

SanerNow PM

PM detect and automatically fix these vulnerabilities by applying security updates. Therefore, use

SanerNow

and keep your systems updated and secure.

Featured Posts

Open CVE-2026-75604: August 2026 Next.js Critical RCE and AVIF Image Optimization Flaw
CVE-2026-75604: Next.js Critical Windows RCE and AVIF Flaw

CVE Research

CVE-2026-75604: August 2026 Next.js Critical RCE and AVIF Image Optimization Flaw

Aug 28, 2026

Open August 2026 KEV Surge: Critical Patch Priority for CVE-2026-65400, CVE-2026-55040, CVE-2026-59310 & CVE-2026-33824
August 2026 KEV Alert: Four Critical CVEs Under Active Exploitation

CVE Research

August 2026 KEV Surge: Critical Patch Priority for CVE-2026-65400, CVE-2026-55040, CVE-2026-59310 & CVE-2026-33824

Aug 24, 2026

Open Cl0p Exploits Critical PTC Windchill Flaw to Target 40+ Organizations
Cl0p Exploits Critical PTC Windchill Flaw to Target 40+ Organizations

CVE Research

Cl0p Exploits Critical PTC Windchill Flaw to Target 40+ Organizations

Aug 24, 2026

Open Operation CameraSwarm: Inside the Toolkit Behind 14,530 Compromised Dahua Cameras
Operation CameraSwarm: Inside the Toolkit Behind 14,530 Compromised Dahua Cameras

CVE Research

Operation CameraSwarm: Inside the Toolkit Behind 14,530 Compromised Dahua Cameras

A single operator compromised 14,530+ Dahua cameras across Ukraine and Russia in 35 days, chaining credential brute-force, a CVE-2021-33044/33045 authentication bypass, and P2P relay abuse to plant a persistent backdoor and harvest transferable admin access.

Aug 21, 2026