This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sonoma 14, Safari 17, iOS 17 and iPadOS 17. A remote attacker may be able to view leaked DNS queries with Private Relay turned on.
History

Tue, 17 Jun 2025 17:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-200
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published: 2024-01-10T22:03:31.999Z

Updated: 2025-06-17T17:01:24.031Z

Reserved: 2023-08-14T20:26:36.252Z

Link: CVE-2023-40385

cve-icon Vulnrichment

Updated: 2024-08-02T18:31:53.687Z

cve-icon NVD

Status : Modified

Published: 2024-01-10T22:15:48.503

Modified: 2025-06-17T17:15:30.867

Link: CVE-2023-40385

cve-icon Redhat

No data.