8.8

CVE-2023-42852

A logic issue was addressed with improved checks. This issue is fixed in iOS 17.1 and iPadOS 17.1, watchOS 10.1, iOS 16.7.2 and iPadOS 16.7.2, macOS Sonoma 14.1, Safari 17.1, tvOS 17.1. Processing web content may lead to arbitrary code execution.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AppleSafari Version < 17.1
AppleiPadOS Version < 16.7.2
AppleiPadOS Version >= 17.0 < 17.1
AppleiPhone OS Version < 16.7.2
AppleiPhone OS Version >= 17.0 < 17.1
ApplemacOS Version >= 14.0 < 14.1
AppletvOS Version < 17.1
ApplewatchOS Version < 10.1
FedoraprojectFedora Version37
DebianDebian Linux Version11.0
DebianDebian Linux Version12.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.17% 0.838
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
134c704f-9b21-4f2e-91b3-4a467353bcc0 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
http://seclists.org/fulldisclosure/2023/Oct/24
Third Party Advisory
Mailing List
http://seclists.org/fulldisclosure/2023/Oct/23
Third Party Advisory
Mailing List
https://support.apple.com/en-us/HT213981
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT213984
Vendor Advisory
Release Notes
http://seclists.org/fulldisclosure/2023/Oct/19
Third Party Advisory
Mailing List
http://seclists.org/fulldisclosure/2023/Oct/25
Third Party Advisory
Mailing List
https://support.apple.com/en-us/HT213982
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT213988
Vendor Advisory
Release Notes
http://seclists.org/fulldisclosure/2023/Oct/22
Third Party Advisory
Mailing List
http://seclists.org/fulldisclosure/2023/Oct/27
Third Party Advisory
Mailing List
https://support.apple.com/en-us/HT213986
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT213987
Vendor Advisory
Release Notes