Lucene search

K
cvelistAppleCVELIST:CVE-2023-39434
HistorySep 26, 2023 - 8:14 p.m.

CVE-2023-39434

2023-09-2620:14:45
apple
www.cve.org
4
cve-2023-39434
memory management
web content
arbitrary code execution

8.9 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

51.5%

A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. Processing web content may lead to arbitrary code execution.

CNA Affected

[
  {
    "vendor": "Apple",
    "product": "iOS and iPadOS",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected",
        "lessThan": "17",
        "versionType": "custom"
      }
    ]
  },
  {
    "vendor": "Apple",
    "product": "macOS",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected",
        "lessThan": "14",
        "versionType": "custom"
      }
    ]
  },
  {
    "vendor": "Apple",
    "product": "watchOS",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected",
        "lessThan": "10",
        "versionType": "custom"
      }
    ]
  }
]

8.9 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

51.5%