NA

CVE-2023-41983

Published: 25/10/2023 Updated: 31/01/2024
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.1, Safari 17.1, iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1. Processing web content may lead to a denial-of-service.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple macos

apple iphone os

apple ipados

apple safari

fedoraproject fedora 37

fedoraproject fedora 38

fedoraproject fedora 39

debian debian linux 11.0

debian debian linux 12.0

Vendor Advisories

The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2023-41983 Junsung Lee discovered that processing web content may lead to a denial-of-service CVE-2023-42852 An anonymous researcher discovered that processing web content may lead to arbitrary code execution For the oldstable distribution (bulls ...
Impact: Visiting a website that frames malicious content may lead to UI spoofing Description: The issue was addressed with improved UI handling (CVE-2022-32919) A website may be able to track the websites a user visited in Safari private browsing mode (CVE-2022-32933) A spoofing issue existed in the handling of URLs This issue was addressed wit ...
About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the Apple security releases page Apple security documents reference vulnerabilities by CVE-ID whe ...
About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the Apple security releases page Apple security documents reference vulnerabilities by CVE-ID whe ...
About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the Apple security releases page Apple security documents reference vulnerabilities by CVE-ID whe ...
About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the Apple security releases page Apple security documents reference vulnerabilities by CVE-ID whe ...

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> APPLE-SA-10-25-2023-9 Safari 171 <!--X-Subject-Header-End--> <!--X-Head-of-Message--> From: Apple Product Security ...