PT-2023-4206 · Apple · Webkit+3

Published

2023-03-27

·

Updated

2023-08-19

·

CVE-2023-32358

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions macOS versions prior to 13.3 iOS versions prior to 16.4 iPadOS versions prior to 16.4
Description The issue is related to a type confusion problem in the WebKit PDF module, which can be exploited by a remote attacker to execute arbitrary code. Processing web content may lead to arbitrary code execution.
Recommendations For macOS versions prior to 13.3, update to macOS Ventura 13.3 or later. For iOS versions prior to 16.4, update to iOS 16.4 or later. For iPadOS versions prior to 16.4, update to iPadOS 16.4 or later.

Fix

Type Confusion

Weakness Enumeration

Related Identifiers

BDU:2023-04521
CVE-2023-32358
ZDI-23-1020

Affected Products

Apple Macos
Webkit
Ios
Ipados