Unrated severityNVD Advisory· Published Feb 27, 2023· Updated Mar 11, 2025
CVE-2023-23517
CVE-2023-23517
Description
The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, watchOS 9.3, macOS Big Sur 11.7.3, Safari 16.3, tvOS 16.3, iOS 16.3 and iPadOS 16.3. Processing maliciously crafted web content may lead to arbitrary code execution.
Affected products
34- osv-coords29 versionspkg:rpm/almalinux/webkit2gtk3pkg:rpm/almalinux/webkit2gtk3-develpkg:rpm/almalinux/webkit2gtk3-jscpkg:rpm/almalinux/webkit2gtk3-jsc-develpkg:rpm/opensuse/webkit2gtk3&distro=openSUSE%20Leap%2015.4pkg:rpm/opensuse/webkit2gtk3-soup2&distro=openSUSE%20Leap%2015.4pkg:rpm/opensuse/webkit2gtk4&distro=openSUSE%20Leap%2015.4pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Enterprise%20Storage%206pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Enterprise%20Storage%207pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Enterprise%20Storage%207.1pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP1-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-ESPOSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP4pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2015%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP1-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP3-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP1pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP2pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Manager%20Proxy%204.2pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Manager%20Server%204.2pkg:rpm/suse/webkit2gtk3-soup2&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP4pkg:rpm/suse/webkit2gtk4&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP4
< 2.38.5-1.el9+ 28 more
- (no CPE)range: < 2.38.5-1.el9
- (no CPE)range: < 2.38.5-1.el9
- (no CPE)range: < 2.38.5-1.el9
- (no CPE)range: < 2.38.5-1.el9
- (no CPE)range: < 2.38.5-150400.4.34.2
- (no CPE)range: < 2.38.5-150400.4.34.2
- (no CPE)range: < 2.38.5-150400.4.34.2
- (no CPE)range: < 2.38.5-150000.3.134.1
- (no CPE)range: < 2.38.5-150200.66.1
- (no CPE)range: < 2.38.5-150200.66.1
- (no CPE)range: < 2.38.5-150000.3.134.1
- (no CPE)range: < 2.38.5-150200.66.1
- (no CPE)range: < 2.38.5-150200.66.1
- (no CPE)range: < 2.38.5-150200.66.1
- (no CPE)range: < 2.38.5-150400.4.34.2
- (no CPE)range: < 2.38.5-150200.66.1
- (no CPE)range: < 2.38.4-2.126.1
- (no CPE)range: < 2.38.5-150000.3.134.1
- (no CPE)range: < 2.38.5-150200.66.1
- (no CPE)range: < 2.38.5-150200.66.1
- (no CPE)range: < 2.38.4-2.126.1
- (no CPE)range: < 2.38.5-150000.3.134.1
- (no CPE)range: < 2.38.5-150200.66.1
- (no CPE)range: < 2.38.5-150200.66.1
- (no CPE)range: < 2.38.4-2.126.1
- (no CPE)range: < 2.38.5-150200.66.1
- (no CPE)range: < 2.38.5-150200.66.1
- (no CPE)range: < 2.38.5-150400.4.34.2
- (no CPE)range: < 2.38.5-150400.4.34.2
- Range: unspecified
- Range: unspecified
- Range: unspecified
- Range: unspecified
- Range: unspecified
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8News mentions
0No linked articles in our index yet.