CVE-2023-42848

The issue was addressed with improved bounds checks. This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvOS 17.1, iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1, macOS Ventura 13.6.1. Processing a maliciously crafted image may lead to heap corruption.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:14.0:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

09 Dec 2024, 17:26

Type Values Removed Values Added
CPE cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:14.0:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
First Time Apple watchos
Apple iphone Os
Apple
Apple ipad Os
Apple tvos
Apple macos
CWE CWE-787
References () https://support.apple.com/en-us/HT213981 - () https://support.apple.com/en-us/HT213981 - Vendor Advisory
References () https://support.apple.com/en-us/HT213982 - () https://support.apple.com/en-us/HT213982 - Vendor Advisory
References () https://support.apple.com/en-us/HT213984 - () https://support.apple.com/en-us/HT213984 - Vendor Advisory
References () https://support.apple.com/en-us/HT213985 - () https://support.apple.com/en-us/HT213985 - Vendor Advisory
References () https://support.apple.com/en-us/HT213987 - () https://support.apple.com/en-us/HT213987 - Vendor Advisory
References () https://support.apple.com/en-us/HT213988 - () https://support.apple.com/en-us/HT213988 - Vendor Advisory

21 Nov 2024, 08:23

Type Values Removed Values Added
References () https://support.apple.com/en-us/HT213981 - () https://support.apple.com/en-us/HT213981 -
References () https://support.apple.com/en-us/HT213982 - () https://support.apple.com/en-us/HT213982 -
References () https://support.apple.com/en-us/HT213984 - () https://support.apple.com/en-us/HT213984 -
References () https://support.apple.com/en-us/HT213985 - () https://support.apple.com/en-us/HT213985 -
References () https://support.apple.com/en-us/HT213987 - () https://support.apple.com/en-us/HT213987 -
References () https://support.apple.com/en-us/HT213988 - () https://support.apple.com/en-us/HT213988 -

26 Aug 2024, 15:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
CWE CWE-122

21 Feb 2024, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-21 07:15

Updated : 2024-12-09 17:26


NVD link : CVE-2023-42848

Mitre link : CVE-2023-42848

CVE.ORG link : CVE-2023-42848


JSON object : View

Products Affected

apple

  • watchos
  • ipad_os
  • iphone_os
  • macos
  • tvos
CWE
CWE-787

Out-of-bounds Write

CWE-122

Heap-based Buffer Overflow