First published: Mon Jan 23 2023(Updated: )
Processing web content may lead to arbitrary code execution. Reference: <a href="https://webkitgtk.org/security/WSA-2023-0006.html">https://webkitgtk.org/security/WSA-2023-0006.html</a>
Credit: product-security@apple.com product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPadOS | <16.3 | |
Apple iPhone OS | <16.3 | |
Apple macOS | >=13.0<13.2 | |
Apple tvOS | <16.3 | |
Apple watchOS | <9.3 | |
ubuntu/webkit2gtk | <2.40.0 | 2.40.0 |
ubuntu/webkit2gtk | <2.40.4-0ubuntu0.22.04.1 | 2.40.4-0ubuntu0.22.04.1 |
debian/webkit2gtk | <=2.36.4-1~deb10u1<=2.38.6-0+deb10u1 | 2.42.2-1~deb11u1 2.42.5-1~deb11u1 2.42.2-1~deb12u1 2.42.5-1~deb12u1 2.42.5-1 |
debian/wpewebkit | <=2.38.6-1~deb11u1<=2.38.6-1 | 2.42.5-1 2.42.5-1.1 |
Apple watchOS | <9.3 | 9.3 |
Apple macOS Ventura | <13.2 | 13.2 |
Apple tvOS | <16.3 | 16.3 |
Apple iOS | <16.3 | 16.3 |
Apple iPadOS | <16.3 | 16.3 |
redhat/WebKITGTK | <2.40.0 | 2.40.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
CVE-2023-32393 is a vulnerability in WebKit that could lead to arbitrary code execution when processing web content.
CVE-2023-32393 has a severity rating of 8.8 (high).
The affected software includes WebKit versions up to 2.40.4-0ubuntu0.22.04.1, watchOS up to version 9.3, tvOS up to version 16.3, macOS Ventura up to version 13.2, iOS up to version 16.3, and iPadOS up to version 16.3.
To fix CVE-2023-32393, you should update the affected software to watchOS 9.3, tvOS 16.3, macOS Ventura 13.2, iOS 16.3, and iPadOS 16.3 or later versions.
You can find more information about CVE-2023-32393 on the Apple support website.