CVE-2023-40441
published 2023-09-27CVE-2023-40441: A resource exhaustion issue was addressed with improved input validation. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content…
PriorityP428medium6.5CVSS 3.1
AVNACLPRNUIRSUCNINAH
EPSS
0.91%
56.0th percentile
A resource exhaustion issue was addressed with improved input validation. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may lead to a denial-of-service.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_17_and_ipados | — | — |
| apple | ios_and_ipados | >= unspecified < 17 | 17 |
| apple | ipados | < 17.0 | 17.0 |
| apple | iphone_os | < 17.0 | 17.0 |
| apple | macos | < 14.0 | 14.0 |
| apple | macos | >= unspecified < 14 | 14 |
| apple | macos_sonoma | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-4w89-86x6-qgv9: A resource exhaustion issue was addressed with improved input validation
ghsa_unreviewed·2023-09-27
CVE-2023-40441 [MEDIUM] CWE-400 GHSA-4w89-86x6-qgv9: A resource exhaustion issue was addressed with improved input validation
A resource exhaustion issue was addressed with improved input validation. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may lead to a denial-of-service.
Apple
CVE-2023-40441: macOS Sonoma 14
vendor_apple·2023-09-26·CVSS 6.5
CVE-2023-40441 [MEDIUM] CVE-2023-40441: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-40441
Component: GPU Drivers
Impact: Processing web content may lead to a denial-of-service
Description: A resource exhaustion issue was addressed with improved input validation.
Apple
CVE-2023-40441: iOS 17 and iPadOS 17
vendor_apple·2023-09-18·CVSS 6.5
CVE-2023-40441 [MEDIUM] CVE-2023-40441: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40441
Component: GPU Drivers
Impact: Processing web content may lead to a denial-of-service
Description: A resource exhaustion issue was addressed with improved input validation.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://seclists.org/fulldisclosure/2023/Oct/3http://seclists.org/fulldisclosure/2023/Oct/8https://support.apple.com/en-us/HT213938https://support.apple.com/en-us/HT213940http://seclists.org/fulldisclosure/2023/Oct/3http://seclists.org/fulldisclosure/2023/Oct/8https://support.apple.com/en-us/HT213938https://support.apple.com/en-us/HT213940https://support.apple.com/kb/HT213938https://support.apple.com/kb/HT213940
2023-09-27
Published