Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.3, iOS 16.7.5 and iPadOS 16.7.5, iOS 17.3 and iPadOS 17.3. Processing maliciously crafted web content may lead to arbitrary code execution.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 08:57
Type | Values Removed | Values Added |
---|---|---|
References | () http://seclists.org/fulldisclosure/2024/Jan/33 - Third Party Advisory | |
References | () http://seclists.org/fulldisclosure/2024/Jan/34 - Third Party Advisory | |
References | () http://seclists.org/fulldisclosure/2024/Jan/36 - Third Party Advisory | |
References | () https://support.apple.com/en-us/HT214059 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/en-us/HT214061 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/en-us/HT214063 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/kb/HT214059 - | |
References | () https://support.apple.com/kb/HT214061 - | |
References | () https://support.apple.com/kb/HT214063 - |
12 Jun 2024, 10:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
10 Jun 2024, 16:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
30 Jan 2024, 16:10
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
|
CWE | CWE-787 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
First Time |
Apple
Apple iphone Os Apple macos Apple ipados |
|
References | () https://support.apple.com/en-us/HT214063 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/en-us/HT214059 - Release Notes, Vendor Advisory | |
References | () http://seclists.org/fulldisclosure/2024/Jan/36 - Third Party Advisory | |
References | () http://seclists.org/fulldisclosure/2024/Jan/33 - Third Party Advisory | |
References | () https://support.apple.com/en-us/HT214061 - Release Notes, Vendor Advisory | |
References | () http://seclists.org/fulldisclosure/2024/Jan/34 - Third Party Advisory |
26 Jan 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
23 Jan 2024, 01:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-01-23 01:15
Updated : 2024-11-21 08:57
NVD link : CVE-2024-23214
Mitre link : CVE-2024-23214
CVE.ORG link : CVE-2024-23214
JSON object : View
Products Affected
apple
- iphone_os
- macos
- ipados
CWE
CWE-787
Out-of-bounds Write