VDB
CVE-2023-42866
CVE-2023-42866
PUBLISHED
CVSS 8.800000190734863 HIGH
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.5, iOS 16.6 and iPadOS 16.6, tvOS 16.6, Safari 16.6, watchOS 9.6. Processing web content may lead to arbitrary code execution.
EPSS 0.76% · 53.7th percentile
Risk Scores
CVSS 3.1
8.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.76%
53.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | tvOS | * |
| Apple | macOS | unspecified |
| Apple | Safari | unspecified |
| Apple | iOS and iPadOS | * |
| apple | iphone_os | 0 |
| apple | ipados | 0 |
| apple | tvos | 0 |
| Apple | watchOS | unspecified |
| apple | watchos | 0 |
| apple | macos | 0 |
| apple | safari | 0 |
Timeline
- Jan 10, 2024 CVE Published
- Jan 17, 2024 EPSS Score
- Feb 15, 2024 EPSS Score
- Mar 14, 2024 EPSS Score
- Apr 12, 2024 EPSS Score
- May 11, 2024 EPSS Score
- Jun 8, 2024 EPSS Score
- Jul 7, 2024 EPSS Score
- Aug 5, 2024 EPSS Score
- Oct 1, 2024 EPSS Score
- Oct 30, 2024 EPSS Score
- Nov 28, 2024 EPSS Score
References
- https://support.apple.com/en-us/HT213847 advisory
- https://support.apple.com/en-us/HT213841 advisory
- https://support.apple.com/en-us/HT213843 advisory
- https://support.apple.com/en-us/HT213846 advisory
- https://support.apple.com/en-us/HT213848 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2023-42866 advisory