Show filters
139 Total Results
Displaying 21-30 of 139
Sort by:
Attacker Value
Unknown

CVE-2023-32373

Disclosure Date: June 23, 2023 (last updated June 28, 2024)
A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, Safari 16.5, iOS 16.5 and iPadOS 16.5. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.
Attacker Value
Unknown

CVE-2023-28204

Disclosure Date: June 23, 2023 (last updated June 28, 2024)
An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, Safari 16.5, iOS 16.5 and iPadOS 16.5. Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been actively exploited.
Attacker Value
Unknown

CVE-2023-2203

Disclosure Date: May 17, 2023 (last updated October 08, 2023)
A flaw was found in the WebKitGTK package. An improper input validation issue may lead to a use-after-free vulnerability. This flaw allows attackers with network access to pass specially crafted web content files, causing a denial of service or arbitrary code execution. This CVE exists because of a CVE-2023-28205 security regression for the WebKitGTK package in Red Hat Enterprise Linux 8.8 and Red Hat Enterprise Linux 9.2.
Attacker Value
Unknown

CVE-2023-25363

Disclosure Date: March 02, 2023 (last updated October 08, 2023)
A use-after-free vulnerability in WebCore::RenderLayer::updateDescendantDependentFlags in WebKitGTK before 2.36.8 allows attackers to execute code remotely.
Attacker Value
Unknown

CVE-2023-25362

Disclosure Date: March 02, 2023 (last updated October 08, 2023)
A use-after-free vulnerability in WebCore::RenderLayer::repaintBlockSelectionGaps in WebKitGTK before 2.36.8 allows attackers to execute code remotely.
Attacker Value
Unknown

CVE-2023-25361

Disclosure Date: March 02, 2023 (last updated October 08, 2023)
A use-after-free vulnerability in WebCore::RenderLayer::setNextSibling in WebKitGTK before 2.36.8 allows attackers to execute code remotely.
Attacker Value
Unknown

CVE-2023-25360

Disclosure Date: March 02, 2023 (last updated October 08, 2023)
A use-after-free vulnerability in WebCore::RenderLayer::renderer in WebKitGTK before 2.36.8 allows attackers to execute code remotely.
Attacker Value
Unknown

CVE-2023-25358

Disclosure Date: March 02, 2023 (last updated October 08, 2023)
A use-after-free vulnerability in WebCore::RenderLayer::addChild in WebKitGTK before 2.36.8 allows attackers to execute code remotely.
Attacker Value
Unknown

CVE-2022-42826

Disclosure Date: February 27, 2023 (last updated October 10, 2024)
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Ventura 13, iOS 16.1 and iPadOS 16, Safari 16.1. Processing maliciously crafted web content may lead to arbitrary code execution.
Attacker Value
Unknown

CVE-2022-30293

Disclosure Date: May 06, 2022 (last updated October 07, 2023)
In WebKitGTK through 2.36.0 (and WPE WebKit), there is a heap-based buffer overflow in WebCore::TextureMapperLayer::setContentsLayer in WebCore/platform/graphics/texmap/TextureMapperLayer.cpp.