Lucene search

K
cvelistAppleCVELIST:CVE-2023-40446
HistoryDec 12, 2023 - 12:38 a.m.

CVE-2023-40446

2023-12-1200:38:29
apple
www.cve.org
6
memory handling
arbitrary code execution
macos monterey
ios 16.7.2
ipados 16.7.2
ios 17.1

AI Score

7.7

Confidence

High

EPSS

0.001

Percentile

21.9%

The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.7.1, iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1. Processing maliciously crafted input may lead to arbitrary code execution in user-installed apps.

CNA Affected

[
  {
    "vendor": "Apple",
    "product": "iOS and iPadOS",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected",
        "lessThan": "16.7",
        "versionType": "custom"
      }
    ]
  },
  {
    "vendor": "Apple",
    "product": "iOS and iPadOS",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected",
        "lessThan": "17.1",
        "versionType": "custom"
      }
    ]
  },
  {
    "vendor": "Apple",
    "product": "macOS",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected",
        "lessThan": "12.7",
        "versionType": "custom"
      }
    ]
  }
]

AI Score

7.7

Confidence

High

EPSS

0.001

Percentile

21.9%

Related for CVELIST:CVE-2023-40446