CVE-2023-42848

The issue was addressed with improved bounds checks. This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvOS 17.1, iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1, macOS Ventura 13.6.1. Processing a maliciously crafted image may lead to heap corruption.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:14.0:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

04 Nov 2025, 20:16

Type Values Removed Values Added
References
  • () https://support.apple.com/kb/HT213982 -
  • () https://support.apple.com/kb/HT213984 -
  • () https://support.apple.com/kb/HT213988 -

Information

Published : 2024-02-21 07:15

Updated : 2025-11-04 20:16


NVD link : CVE-2023-42848

Mitre link : CVE-2023-42848

CVE.ORG link : CVE-2023-42848


JSON object : View

Products Affected

apple

  • watchos
  • iphone_os
  • ipad_os
  • tvos
  • macos
CWE
CWE-787

Out-of-bounds Write

CWE-122

Heap-based Buffer Overflow