The issue was addressed with improved memory handling. This issue is fixed in Safari 17.2, macOS Sonoma 14.2, iOS 17.2 and iPadOS 17.2, watchOS 10.2, tvOS 17.2, iOS 16.7.3 and iPadOS 16.7.3. Processing an image may lead to a denial-of-service.
References
Link Resource
http://seclists.org/fulldisclosure/2023/Dec/12 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2023/Dec/13 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2023/Dec/6 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2023/Dec/7 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2023/Dec/8 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2023/Dec/9 Mailing List Third Party Advisory
http://www.openwall.com/lists/oss-security/2023/12/18/1 Mailing List Third Party Advisory
https://support.apple.com/en-us/HT214034 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT214035 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT214036 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT214039 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT214040 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT214041 Release Notes Vendor Advisory
https://support.apple.com/kb/HT214034
https://support.apple.com/kb/HT214039
https://www.debian.org/security/2023/dsa-5580 Mailing List Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: apple

Published: 2023-12-12T00:27:16.184Z

Updated: 2023-12-12T00:27:16.184Z

Reserved: 2023-09-14T19:05:11.455Z


Link: CVE-2023-42883

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-12-12T01:15:11.330

Modified: 2024-06-12T10:15:26.310


Link: CVE-2023-42883

JSON object: View

cve-icon Redhat Information

No data.