VDB
DEBIAN-CVE-2023-42852
DEBIAN-CVE-2023-42852
PUBLISHED
CVSS 8.800000190734863 HIGH
A logic issue was addressed with improved checks. This issue is fixed in iOS 17.1 and iPadOS 17.1, watchOS 10.1, iOS 16.7.2 and iPadOS 16.7.2, macOS Sonoma 14.1, Safari 17.1, tvOS 17.1. Processing web content may lead to arbitrary code execution.
Risk Scores
CVSS 3.1
8.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:12 | webkit2gtk | 0, *, * |
| Debian:11 | wpewebkit | 2.38.3-1, 2.38.2-1, 2.38.2-1~deb11u1 |
| Debian:14 | webkit2gtk | 0, 0, 0 |
| Debian:11 | webkit2gtk | 2.42.1-1~deb12u1, 2.38.5-1, 2.38.5-1 |
| Debian:14 | wpewebkit | 0, 0, 0 |
| Debian:13 | wpewebkit | 0, 0, 0 |
| Debian:12 | wpewebkit | 2.46.1-1, 2.50.2-1, 2.50.4-1 |
| Debian:13 | webkit2gtk | 0, 0, 0 |
Exploit Intelligence
- macos_v2_generated.go (github-poc)
- cve_test.go (github-poc)
- cve_test.go (github-poc)
- macos_v1_generated.go (github-poc)
- ios_v2_generated.go (github-poc)
- ios_v1_generated.go (github-poc)
- safari_v2_generated.go (github-poc)
Timeline
- Oct 25, 2023 CVE Published
- Apr 28, 2026 CVE Updated