CVE-2023-32402

An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, Safari 16.5, iOS 16.5 and iPadOS 16.5. Processing web content may disclose sensitive information.
References
Link Resource
https://support.apple.com/en-us/HT213757 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213758 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213761 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213762 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213764 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

27 Jul 2023, 04:15

Type Values Removed Values Added
Summary An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 9.5, macOS Ventura 13.4, Safari 16.5, tvOS 16.5, iOS 16.5 and iPadOS 16.5. Processing web content may disclose sensitive information An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, Safari 16.5, iOS 16.5 and iPadOS 16.5. Processing web content may disclose sensitive information.

30 Jun 2023, 07:16

Type Values Removed Values Added
References (MISC) https://support.apple.com/en-us/HT213764 - (MISC) https://support.apple.com/en-us/HT213764 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213757 - (MISC) https://support.apple.com/en-us/HT213757 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213761 - (MISC) https://support.apple.com/en-us/HT213761 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213758 - (MISC) https://support.apple.com/en-us/HT213758 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213762 - (MISC) https://support.apple.com/en-us/HT213762 - Release Notes, Vendor Advisory
First Time Apple
Apple watchos
Apple iphone Os
Apple tvos
Apple macos
Apple safari
Apple ipados
CWE CWE-125
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CPE cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*

23 Jun 2023, 19:24

Type Values Removed Values Added
New CVE

Information

Published : 2023-06-23 18:15

Updated : 2024-02-28 20:13


NVD link : CVE-2023-32402

Mitre link : CVE-2023-32402

CVE.ORG link : CVE-2023-32402


JSON object : View

Products Affected

apple

  • macos
  • watchos
  • iphone_os
  • ipados
  • safari
  • tvos
CWE
CWE-125

Out-of-bounds Read