PT-2023-6622 · Apple+7 · Apple Macos+12

Junsung Lee

+1

·

Published

2023-07-18

·

Updated

2026-05-08

·

CVE-2023-41074

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Apple iOS versions prior to 17 Apple iPadOS versions prior to 17 Apple tvOS versions prior to 17 Apple watchOS versions prior to 10 Apple macOS versions prior to Sonoma 14 Safari versions prior to 17
Description The issue is related to the WebKit module's handling of web content, which may lead to arbitrary code execution due to a buffer overflow in memory. This can be exploited by a remote attacker. The estimated number of potentially affected devices is not specified.
Recommendations For Apple iOS versions prior to 17, update to version 17 or later. For Apple iPadOS versions prior to 17, update to version 17 or later. For Apple tvOS versions prior to 17, update to version 17 or later. For Apple watchOS versions prior to 10, update to version 10 or later. For Apple macOS versions prior to Sonoma 14, update to Sonoma 14 or later. For Safari versions prior to 17, update to version 17 or later.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2023-07389
BIT-JAVA-2023-41074
BIT-JAVA-MIN-2023-41074
BIT-JRE-2023-41074
CESA-2023_4202
CVE-2023-41074
DSA-5527-1
DSA-5527-2
MGASA-2024-0148
OPENSUSE-SU-2023_4294-1
OPENSUSE-SU-2024_0004-1
RHSA-2023:4201
RHSA-2023:4202
RHSA-2023_4201
RHSA-2023_4202
RHSA-2025:10364
SUSE-SU-2023:4209-1
SUSE-SU-2023:4211-1
SUSE-SU-2023:4294-1
SUSE-SU-2023:4339-1
SUSE-SU-2023:4978-1
SUSE-SU-2024:0002-1
SUSE-SU-2024:0003-1
SUSE-SU-2024:0004-1
USN-6426-1

Affected Products

Astra Linux
Centos
Debian
Linuxmint
Apple Macos
Red Hat
Safari
Suse
Ubuntu
Ios
Ipados
Tvos
Watchos