This issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, tvOS 16.4, watchOS 9.4. Processing maliciously crafted web content may bypass Same Origin Policy.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/HT213670 | Vendor Advisory |
https://support.apple.com/en-us/HT213671 | Vendor Advisory |
https://support.apple.com/en-us/HT213674 | Vendor Advisory |
https://support.apple.com/en-us/HT213676 | Vendor Advisory |
https://support.apple.com/en-us/HT213678 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: apple
Published: 2023-05-08T00:00:00
Updated: 2023-07-27T03:47:33.238Z
Reserved: 2023-03-08T00:00:00
Link: CVE-2023-27932
JSON object: View
NVD Information
Status : Modified
Published: 2023-05-08T20:15:17.247
Modified: 2023-07-27T04:15:17.383
Link: CVE-2023-27932
JSON object: View
Redhat Information
No data.
CWE