First published: Mon Jul 24 2023(Updated: )
Processing web content may lead to arbitrary code execution. Description: The issue was addressed with improved checks. <a href="https://webkitgtk.org/security/WSA-2023-0007.html">https://webkitgtk.org/security/WSA-2023-0007.html</a>
Credit: product-security@apple.com product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
ubuntu/webkit2gtk | <2.40.5 | 2.40.5 |
ubuntu/webkit2gtk | <2.40.5-0ubuntu0.22.04.1 | 2.40.5-0ubuntu0.22.04.1 |
ubuntu/webkit2gtk | <2.40.5-0ubuntu0.23.04.1 | 2.40.5-0ubuntu0.23.04.1 |
ubuntu/webkit2gtk | <2.40.5-1 | 2.40.5-1 |
debian/webkit2gtk | <=2.36.4-1~deb10u1<=2.38.6-0+deb10u1 | 2.42.2-1~deb11u1 2.42.5-1~deb11u1 2.42.2-1~deb12u1 2.42.5-1~deb12u1 2.42.5-1 |
debian/wpewebkit | <=2.38.6-1~deb11u1<=2.38.6-1 | 2.42.5-1 2.42.5-1.1 |
redhat/webkitgtk | <2.40.5 | 2.40.5 |
Apple macOS | <13.5 | 13.5 |
tvOS | <16.6 | 16.6 |
Apple Mobile Safari | <16.6 | 16.6 |
Apple Mobile Safari | <16.6 | |
Apple iOS, iPadOS, and watchOS | <16.6 | |
iOS | <16.6 | |
Apple iOS and macOS | >=13.0<13.5 | |
tvOS | <16.6 | |
Apple iOS, iPadOS, and watchOS | <9.6 | |
Apple iOS, iPadOS, and watchOS | <16.6 | 16.6 |
Apple iOS, iPadOS, and watchOS | <16.6 | 16.6 |
Apple iOS, iPadOS, and watchOS | <9.6 | 9.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2023-38595.
The severity level of CVE-2023-38595 is high.
The affected software versions are iOS up to exclusive 16.6, iPadOS up to exclusive 16.6, tvOS up to exclusive 16.6, macOS Ventura up to exclusive 13.5, Safari up to exclusive 16.6, and watchOS up to exclusive 9.6.
CVE-2023-38595 was fixed with improved checks in iOS 16.6 and iPadOS 16.6, tvOS 16.6, macOS Ventura 13.5, Safari 16.6, and watchOS 9.6.
CVE-2023-38595 may lead to arbitrary code execution when processing web content.