NA

CVE-2023-38599

Published: 28/07/2023 Updated: 05/01/2024
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A logic issue was addressed with improved state management. This issue is fixed in Safari 16.6, watchOS 9.6, iOS 15.7.8 and iPadOS 15.7.8, tvOS 16.6, iOS 16.6 and iPadOS 16.6, macOS Ventura 13.5. A website may be able to track sensitive user information.

Vulnerable Product Search on Vulmon Subscribe to Product

apple ipados

apple iphone os

apple macos

apple watchos

apple tvos

apple safari

Vendor Advisories

Synopsis Important: webkit2gtk3 security and bug fix update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for webkit2gtk3 is now available for Red Hat Enterprise Linux 9Red Hat Product Security has rated this ...
Synopsis Important: webkit2gtk3 security and bug fix update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for webkit2gtk3 is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this ...
The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2023-38133 YeongHyeon Choi discovered that processing web content may disclose sensitive information CVE-2023-38572 Narendra Bhati discovered that a website may be able to bypass the Same Origin Policy CVE-2023-38592 Narendra Bhati, Valentino ...
A use-after-free issue was addressed with improved memory management This issue is fixed in iOS 164 and iPadOS 164, macOS Ventura 133 Processing web content may lead to arbitrary code execution (CVE-2023-28198) A logic issue was addressed with improved validation This issue is fixed in macOS Ventura 133 Content Security Policy to block dom ...
DescriptionThe MITRE CVE dictionary describes this issue as: A logic issue was addressed with improved state management This issue is fixed in Safari 166, watchOS 96, iOS 1578 and iPadOS 1578, tvOS 166, iOS 166 and iPadOS 166, macOS Ventura 135 A website may be able to track sensitive user information ...