CVE-2024-23213

The issue was addressed with improved memory handling. This issue is fixed in Safari 17.3, iOS 16.7.5 and iPadOS 16.7.5, iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, tvOS 17.3, watchOS 10.3. Processing web content may lead to arbitrary code execution.
References
Link Resource
https://support.apple.com/en-us/120304
https://support.apple.com/en-us/120306
https://support.apple.com/en-us/120309
https://support.apple.com/en-us/120310
https://support.apple.com/en-us/120311
https://support.apple.com/en-us/120339
http://seclists.org/fulldisclosure/2024/Jan/27 Third Party Advisory
http://seclists.org/fulldisclosure/2024/Jan/33 Third Party Advisory
http://seclists.org/fulldisclosure/2024/Jan/34 Third Party Advisory
http://seclists.org/fulldisclosure/2024/Jan/36 Third Party Advisory
http://seclists.org/fulldisclosure/2024/Jan/39 Third Party Advisory
http://seclists.org/fulldisclosure/2024/Jan/40 Third Party Advisory
http://www.openwall.com/lists/oss-security/2024/02/05/8
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/US43EQFC2IS66EA2CPAZFH2RQ6WD7PKF/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/X2VJMEDT4GL42AQVHSYOT6DIVJDZWIV4/
https://support.apple.com/en-us/HT214055 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT214056 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT214059 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT214060 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT214061 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT214063 Release Notes Vendor Advisory
https://support.apple.com/kb/HT214055
https://support.apple.com/kb/HT214056
https://support.apple.com/kb/HT214059
https://support.apple.com/kb/HT214060
https://support.apple.com/kb/HT214061
https://support.apple.com/kb/HT214063
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-01-23 01:15

Updated : 2026-06-17 07:12


NVD link : CVE-2024-23213

Mitre link : CVE-2024-23213

CVE.ORG link : CVE-2024-23213


JSON object : View

Products Affected

apple

  • iphone_os
  • ipados
  • tvos
  • safari
  • watchos
  • macos
CWE
NVD-CWE-noinfo CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer