The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7.
References
| Link | Resource |
|---|---|
| https://security.gentoo.org/glsa/202401-33 | Third Party Advisory |
| https://security.netapp.com/advisory/ntap-20240426-0004/ | Third Party Advisory |
| https://support.apple.com/en-us/HT213940 | Release Notes Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
History
23 May 2024, 17:51
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:apple:iphone_os:17.0:*:*:*:*:*:*:* cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* |
cpe:2.3:a:netapp:cloud_insights_acquisition_unit:-:*:*:*:*:*:*:* cpe:2.3:a:oracle:graalvm:21.3.9:*:*:*:enterprise:*:*:* cpe:2.3:a:netapp:cloud_insights_storage_workload_security_agent:-:*:*:*:*:*:*:* cpe:2.3:a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:* cpe:2.3:a:oracle:jdk:1.8.0:update401:*:*:*:*:*:* cpe:2.3:a:oracle:jre:1.8.0:update401:*:*:*:*:*:* cpe:2.3:a:oracle:graalvm:20.3.13:*:*:*:enterprise:*:*:* cpe:2.3:a:netapp:oncommand_insight:-:*:*:*:*:*:*:* |
| References | () https://security.gentoo.org/glsa/202401-33 - Third Party Advisory | |
| References | () https://security.netapp.com/advisory/ntap-20240426-0004/ - Third Party Advisory | |
| First Time |
Netapp cloud Insights Storage Workload Security Agent
Netapp Oracle graalvm Netapp oncommand Workflow Automation Netapp cloud Insights Acquisition Unit Netapp oncommand Insight Oracle jre Oracle jdk Oracle |
26 Apr 2024, 09:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
31 Jan 2024, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
23 Jan 2024, 01:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7. | |
| References |
|
10 Jan 2024, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| Summary | (en) The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14, Safari 17, iOS 16.7 and iPadOS 16.7. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7. |
Information
Published : 2023-09-21 19:15
Updated : 2024-05-23 17:51
NVD link : CVE-2023-41993
Mitre link : CVE-2023-41993
CVE.ORG link : CVE-2023-41993
JSON object : View
Products Affected
fedoraproject
- fedora
apple
- ipados
- iphone_os
- macos
oracle
- jdk
- jre
- graalvm
netapp
- oncommand_workflow_automation
- cloud_insights_acquisition_unit
- oncommand_insight
- cloud_insights_storage_workload_security_agent
debian
- debian_linux
CWE
CWE-754
Improper Check for Unusual or Exceptional Conditions
