First published: Mon Mar 27 2023(Updated: )
This issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.3, iOS 15.7.4 and iPadOS 15.7.4, Safari 16.4, iOS 16.4 and iPadOS 16.4. A remote user may be able to cause unexpected app termination or arbitrary code execution
Credit: Dohyun Lee @l33d0hyun SSD Labscrixer @pwning_me SSD LabsDohyun Lee @l33d0hyun SSD Labscrixer @pwning_me SSD LabsDohyun Lee @l33d0hyun SSD Labscrixer @pwning_me SSD LabsDohyun Lee @l33d0hyun SSD Labs SSD Labscrixer @pwning_me SSD LabsDohyun Lee @l33d0hyun SSD Labscrixer @pwning_me SSD Labs product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple tvOS | <16.4 | 16.4 |
Apple iOS | <15.7.4 | 15.7.4 |
Apple iPadOS | <15.7.4 | 15.7.4 |
Apple Safari | <16.4 | 16.4 |
Apple Safari | <16.4 | |
Apple Ipad Os | <15.7.4 | |
Apple Ipad Os | >=16.0<16.4 | |
Apple iPhone OS | <15.7.4 | |
Apple iPhone OS | >=16.0<16.4 | |
Apple macOS | >=13.0<13.3 | |
<16.4 | 16.4 | |
<16.4 | 16.4 | |
Apple macOS Ventura | <13.3 | 13.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2023-28201 is a vulnerability in WebKit Web Inspector that could allow a remote user to cause unexpected app termination or arbitrary code execution.
CVE-2023-28201 was fixed with improved state management in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, and tvOS 16.4.
CVE-2023-28201 has a severity rating of 9.8 (critical).
CVE-2023-28201 affects Apple iOS versions up to and excluding 15.7.4, iPadOS versions up to and excluding 15.7.4, Apple iOS versions up to and excluding 16.4, iPadOS versions up to and excluding 16.4, Apple tvOS versions up to and excluding 16.4, Apple macOS Ventura versions up to and excluding 13.3, and Apple Safari versions up to and excluding 16.4.
You can find more information about CVE-2023-28201 on the Apple support website at the following links: [link1](https://support.apple.com/en-us/HT213673), [link2](https://support.apple.com/en-us/HT213670), [link3](https://support.apple.com/en-us/HT213671).