PT-2023-1841 · Apple+8 · Ios+12

Published

2023-02-13

·

Updated

2024-06-28

·

CVE-2023-23529

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Apple Multiple Products versions prior to iOS 15.7.4 Apple Multiple Products versions prior to iPadOS 15.7.4 Apple Multiple Products versions prior to iOS 16.3.1 Apple Multiple Products versions prior to iPadOS 16.3.1 Apple Multiple Products versions prior to macOS Ventura 13.2.1 Apple Multiple Products versions prior to Safari 16.3
Description A type confusion issue was addressed with improved checks. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited. The issue is related to the WebKit framework of the browser, which could allow arbitrary code execution after an unsuspecting user visits a compromised URL.
Recommendations For versions prior to iOS 15.7.4, update to iOS 15.7.4 or later. For versions prior to iPadOS 15.7.4, update to iPadOS 15.7.4 or later. For versions prior to iOS 16.3.1, update to iOS 16.3.1 or later. For versions prior to iPadOS 16.3.1, update to iPadOS 16.3.1 or later. For versions prior to macOS Ventura 13.2.1, update to macOS Ventura 13.2.1 or later. For versions prior to Safari 16.3, update to Safari 16.3 or later.

Fix

Buffer Overflow

Type Confusion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2023:0902
ALSA-2023:0903
ALSA-2023_0902
ALSA-2023_0903
BDU:2023-01439
CESA-2023_0902
CVE-2023-23529
DLA-3320-1
DSA-5351-1
DSA-5352-1
ELSA-2023-0902
ELSA-2023-0903
MGASA-2023-0055
RHSA-2023:0902
RHSA-2023:0903
RHSA-2023_0902
RHSA-2023_0903
RHSA-2025:10364
RLSA-2023:0902
RLSA-2023:0903
RLSA-2023_0902
RLSA-2023_0903
SUSE-SU-2023:0489-1
SUSE-SU-2023:0490-1
SUSE-SU-2023:0573-1
SUSE-SU-2023:1681-1
SUSE-SU-2023_0489-1
SUSE-SU-2023_0490-1
SUSE-SU-2023_0573-1
SUSE-SU-2023_1681-1
USN-5893-1

Affected Products

Almalinux
Astra Linux
Centos
Linuxmint
Apple Macos
Red Hat
Rocky Linux
Safari
Suse
Ubuntu
Ios
Ipados
Macos Ventura