The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.1, Safari 17.1, iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1. Processing web content may lead to a denial-of-service.
[
{
"vendor": "Apple",
"product": "iOS and iPadOS",
"versions": [
{
"version": "unspecified",
"status": "affected",
"lessThan": "16.7",
"versionType": "custom"
}
]
},
{
"vendor": "Apple",
"product": "Safari",
"versions": [
{
"version": "unspecified",
"status": "affected",
"lessThan": "17.1",
"versionType": "custom"
}
]
},
{
"vendor": "Apple",
"product": "macOS",
"versions": [
{
"version": "unspecified",
"status": "affected",
"lessThan": "14.1",
"versionType": "custom"
}
]
},
{
"vendor": "Apple",
"product": "iOS and iPadOS",
"versions": [
{
"version": "unspecified",
"status": "affected",
"lessThan": "17.1",
"versionType": "custom"
}
]
}
]
seclists.org/fulldisclosure/2023/Oct/19
seclists.org/fulldisclosure/2023/Oct/23
seclists.org/fulldisclosure/2023/Oct/24
seclists.org/fulldisclosure/2023/Oct/27
www.openwall.com/lists/oss-security/2023/11/15/1
lists.fedoraproject.org/archives/list/[email protected]/message/RPPMOWFYZODONTA3RLZOKSGNR4DELGG2/
lists.fedoraproject.org/archives/list/[email protected]/message/S3O7ITSBZDHLBM5OG22K6RZAHRRTGECM/
lists.fedoraproject.org/archives/list/[email protected]/message/ZTCZGQPRDAOPP6NK4CIDJKIPMBWD5J7K/
security.gentoo.org/glsa/202401-33
support.apple.com/en-us/HT213981
support.apple.com/en-us/HT213982
support.apple.com/en-us/HT213984
support.apple.com/en-us/HT213986
support.apple.com/kb/HT213984
www.debian.org/security/2023/dsa-5557