First published: Thu May 18 2023(Updated: )
An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, Safari 16.5, iOS 16.5 and iPadOS 16.5. Processing web content may disclose sensitive information.
Credit: product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <16.5 | 16.5 |
Apple iPadOS | <16.5 | 16.5 |
<13.4 | 13.4 | |
Apple tvOS | <16.5 | 16.5 |
<16.5 | 16.5 | |
Apple watchOS | <9.5 | 9.5 |
Apple Safari | <16.5 | |
Apple iPadOS | >=16.0<16.5 | |
Apple iPhone OS | >=16.0<16.5 | |
Apple macOS | >=13.0<13.4 | |
Apple tvOS | <16.5 | |
Apple watchOS | <9.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this issue is CVE-2023-32402.
The severity of CVE-2023-32402 is medium with a severity value of 6.5.
CVE-2023-32402 affects Safari 16.5, iOS 16.5, iPadOS 16.5, macOS Ventura 13.4, watchOS 9.5, and tvOS 16.5.
CVE-2023-32402 was fixed with improved input validation in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, Safari 16.5, iOS 16.5, and iPadOS 16.5.
Yes, processing web content affected by CVE-2023-32402 may disclose sensitive information.