CVE-2023-40414

A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 10, iOS 17 and iPadOS 17, tvOS 17, macOS Sonoma 14, Safari 17. Processing web content may lead to arbitrary code execution.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

21 Nov 2024, 08:19

Type Values Removed Values Added
References () http://www.openwall.com/lists/oss-security/2024/02/05/8 - () http://www.openwall.com/lists/oss-security/2024/02/05/8 -
References () https://support.apple.com/en-us/HT213936 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213936 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213937 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213937 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213938 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213938 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213940 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213940 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213941 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213941 - Release Notes, Vendor Advisory

06 Feb 2024, 02:15

Type Values Removed Values Added
References
  • () http://www.openwall.com/lists/oss-security/2024/02/05/8 -

18 Jan 2024, 14:30

Type Values Removed Values Added
References () https://support.apple.com/en-us/HT213936 - () https://support.apple.com/en-us/HT213936 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213937 - () https://support.apple.com/en-us/HT213937 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213938 - () https://support.apple.com/en-us/HT213938 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213940 - () https://support.apple.com/en-us/HT213940 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213941 - () https://support.apple.com/en-us/HT213941 - Release Notes, Vendor Advisory
CPE cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
First Time Apple safari
Apple watchos
Apple tvos
Apple ipados
Apple macos
Apple iphone Os
Apple
CWE CWE-416
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8

11 Jan 2024, 13:57

Type Values Removed Values Added
Summary
  • (es) Se solucionó un problema de use after free con una gestión de memoria mejorada. Este problema se solucionó en watchOS 10, iOS 17 y iPadOS 17, tvOS 17, macOS Sonoma 14, Safari 17. El procesamiento de contenido web puede provocar la ejecución de código arbitrario.

10 Jan 2024, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-10 22:15

Updated : 2024-11-21 08:19


NVD link : CVE-2023-40414

Mitre link : CVE-2023-40414

CVE.ORG link : CVE-2023-40414


JSON object : View

Products Affected

apple

  • ipados
  • tvos
  • macos
  • safari
  • iphone_os
  • watchos
CWE
CWE-416

Use After Free