8.8

CVE-2023-43010

Medienbericht
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.2 and iPadOS 17.2, macOS Sonoma 14.2, Safari 17.2, iOS 16.7.15 and iPadOS 16.7.15, iOS 15.8.7 and iPadOS 15.8.7. Processing maliciously crafted web content may lead to memory corruption.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AppleSafari Version < 17.2
AppleiPadOS Version < 15.8.7
AppleiPadOS Version >= 16.0 < 16.7.15
AppleiPadOS Version >= 17.0 < 17.2
AppleiPhone OS Version < 15.8.7
AppleiPhone OS Version >= 16.0 < 16.7.15
AppleiPhone OS Version >= 17.0 < 17.2
ApplemacOS Version < 14.2
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.05% 0.155
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
134c704f-9b21-4f2e-91b3-4a467353bcc0 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.