CVE-2023-42852: Use After Free
A logic issue was addressed with improved checks. This issue is fixed in iOS 17.1 and iPadOS 17.1, watchOS 10.1, iOS 16.7.2 and iPadOS 16.7.2, macOS Sonoma 14.1, Safari 17.1, tvOS 17.1. Processing web content may lead to arbitrary code execution.
Credit
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-42852.
What is the description of the vulnerability?
A logic issue was addressed with improved checks. Processing web content may lead to arbitrary code execution.
Which products are affected by this vulnerability?
The affected products include macOS Sonoma, Safari, iOS, iPadOS, watchOS, and tvOS.
Which versions are affected by this vulnerability?
Versions up to and excluding macOS Sonoma 14.1, Safari 17.1, iOS 16.7.2 and iPadOS 16.7.2, watchOS 10.1, iOS 17.1 and iPadOS 17.1, tvOS 17.1 are affected by this vulnerability.
How can I fix this vulnerability?
To fix this vulnerability, update to iOS 17.1 and iPadOS 17.1, watchOS 10.1, iOS 16.7.2 and iPadOS 16.7.2, macOS Sonoma 14.1, Safari 17.1, tvOS 17.1.