A logic issue was addressed with improved checks. This issue is fixed in iOS 17.1 and iPadOS 17.1, watchOS 10.1, iOS 16.7.2 and iPadOS 16.7.2, macOS Sonoma 14.1, Safari 17.1, tvOS 17.1. Processing web content may lead to arbitrary code execution.
References
Link Resource
http://seclists.org/fulldisclosure/2023/Oct/19 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2023/Oct/22 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2023/Oct/23 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2023/Oct/24 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2023/Oct/25 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2023/Oct/27 Mailing List Third Party Advisory
http://www.openwall.com/lists/oss-security/2023/11/15/1 Mailing List
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RPPMOWFYZODONTA3RLZOKSGNR4DELGG2/ Mailing List Third Party Advisory
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/S3O7ITSBZDHLBM5OG22K6RZAHRRTGECM/ Mailing List Third Party Advisory
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZTCZGQPRDAOPP6NK4CIDJKIPMBWD5J7K/ Mailing List
https://security.gentoo.org/glsa/202401-33 Third Party Advisory
https://support.apple.com/en-us/HT213981 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213982 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213984 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213986 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213987 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213988 Release Notes Vendor Advisory
https://support.apple.com/kb/HT213984 Third Party Advisory
https://www.debian.org/security/2023/dsa-5557 Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: apple

Published: 2023-10-25T18:32:18.866Z

Updated: 2023-10-25T18:32:18.866Z

Reserved: 2023-09-14T19:05:11.450Z


Link: CVE-2023-42852

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-10-25T19:15:10.843

Modified: 2024-02-16T15:24:56.403


Link: CVE-2023-42852

JSON object: View

cve-icon Redhat Information

No data.