cbcvebase.
CVE-2024-27833
published 2024-06-10

CVE-2024-27833: An integer overflow was addressed with improved input validation. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5…

high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
An integer overflow was addressed with improved input validation. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, tvOS 17.5, visionOS 1.2. Processing maliciously crafted web content may lead to arbitrary code execution.

Affected

16 ranges
VendorProductVersion rangeFixed in
appleios_16.7.8_and_ipados
appleios_17.5_and_ipados
appleios_and_ipados< 16.7.816.7.8
appleios_and_ipados< 17.517.5
appleipados< 16.7.816.7.8
appleipados>= 17.0 < 17.517.5
appleiphone_os< 16.7.816.7.8
appleiphone_os>= 17.0 < 17.517.5
applesafari< 17.517.5
applesafari
appletvos< 17.517.5
appletvos
applevisionos< 1.21.2
applevisionos
debianwebkit2gtk< webkit2gtk 2.44.2-1~deb12u1 (bookworm)webkit2gtk 2.44.2-1~deb12u1 (bookworm)
debianwpewebkit< webkit2gtk 2.44.2-1~deb12u1 (bookworm)webkit2gtk 2.44.2-1~deb12u1 (bookworm)

CVSS provenance

nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH