7.8

CVE-2023-42899

The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.2, iOS 17.2 and iPadOS 17.2, watchOS 10.2, macOS Ventura 13.6.3, tvOS 17.2, iOS 16.7.3 and iPadOS 16.7.3, macOS Monterey 12.7.2. Processing an image may lead to arbitrary code execution.

Data is provided by the National Vulnerability Database (NVD)
AppleiPadOS Version < 16.7.3
AppleiPadOS Version >= 17.0 < 17.2
AppleiPhone OS Version < 16.7.3
AppleiPhone OS Version >= 17.0 < 17.2
ApplemacOS Version >= 12.0.0 < 12.7.2
ApplemacOS Version >= 13.0 < 13.6.3
ApplemacOS Version >= 14.0 < 14.2
AppletvOS Version < 10.2
ApplewatchOS Version < 10.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.04% 0.101
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
http://seclists.org/fulldisclosure/2023/Dec/10
Third Party Advisory
Mailing List
http://seclists.org/fulldisclosure/2023/Dec/11
Third Party Advisory
Mailing List
http://seclists.org/fulldisclosure/2023/Dec/9
Third Party Advisory
Mailing List
http://seclists.org/fulldisclosure/2023/Dec/12
Third Party Advisory
Mailing List
http://seclists.org/fulldisclosure/2023/Dec/13
Third Party Advisory
Mailing List
http://seclists.org/fulldisclosure/2023/Dec/8
Third Party Advisory
Mailing List
http://seclists.org/fulldisclosure/2023/Dec/7
Third Party Advisory
Mailing List
https://support.apple.com/en-us/HT214036
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214034
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214035
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214040
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214041
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214038
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214037
Vendor Advisory
Release Notes