CVE Vulnerabilities

CVE-2023-40448

Published: Sep 27, 2023 | Modified: Nov 07, 2023
CVSS 3.x
8.6
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

The issue was addressed with improved handling of protocols. This issue is fixed in tvOS 17, iOS 16.7 and iPadOS 16.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. A remote attacker may be able to break out of Web Content sandbox.

Affected Software

Name Vendor Start Version End Version
Ipados Apple * 16.7 (excluding)
Iphone_os Apple * 16.7 (excluding)
Macos Apple * 14.0 (excluding)
Tvos Apple * 17.0 (excluding)
Watchos Apple * 10.0 (excluding)

References