cbcvebase.
CVE-2023-28198
published 2023-08-14

CVE-2023-28198: A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 16.4 and iPadOS 16.4, macOS Ventura 13.3. Processing web…

high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 16.4 and iPadOS 16.4, macOS Ventura 13.3. Processing web content may lead to arbitrary code execution.

Affected

13 ranges
VendorProductVersion rangeFixed in
appleios_15.7.4_and_ipados
appleios_16.4_and_ipados
appleios_and_ipados>= unspecified < 16.416.4
appleipados< 16.416.4
appleiphone_os< 16.416.4
applemacos>= 13.0 < 13.313.3
applemacos>= unspecified < 13.313.3
applemacos_ventura
applesafari
debianwebkit2gtk< webkit2gtk 2.40.1-1 (bookworm)webkit2gtk 2.40.1-1 (bookworm)
debianwpewebkit< webkit2gtk 2.40.1-1 (bookworm)webkit2gtk 2.40.1-1 (bookworm)
webkitgtkwebkitgtk< 2.40.12.40.1
wpewebkitwpe_webkit< 2.40.12.40.1

CVSS provenance

nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH