QID 610525
Date Published: 2023-11-17
QID 610525: Apple iOS 17 and iPadOS 17 Security Update Missing (HT213938)
iOS is a mobile operating system created and developed by Apple Inc.
Following security issues are observed :
A permissions issue was addressed with improved redaction of sensitive information.
CVE-2023-40384
The issue was addressed with improved handling of protocols.
CVE-2023-40448
The issue was addressed with improved memory handling.
CVE-2023-40432
A use-after-free issue was addressed with improved memory management.
CVE-2023-41071
The issue was addressed with improved memory handling.
CVE-2023-40399
An out-of-bounds read was addressed with improved input validation.
CVE-2023-40410
The issue was addressed with improved handling of caches.
CVE-2023-32361
An out-of-bounds read was addressed with improved bounds checking.
CVE-2023-41232
The issue was addressed with improved checks.
CVE-2023-35984
A privacy issue was addressed with improved private data redaction for log entries.
CVE-2023-41065
The issue was addressed with improved handling of protocols.
CVE-2023-38596
The issue was addressed with improved memory handling.
CVE-2023-40420
This issue was addressed with improved checks.
CVE-2023-32396
A permissions issue was addressed with additional restrictions.
CVE-2023-41980
The issue was addressed with improved handling of caches.
CVE-2023-40395
The issue was addressed with improved memory handling.
CVE-2023-40431
The issue was addressed with improved memory handling.
CVE-2023-40391
A resource exhaustion issue was addressed with improved input validation.
CVE-2023-40441
A configuration issue was addressed with additional restrictions.
CVE-2023-40434
A use-after-free issue was addressed with improved memory management.
CVE-2023-41995
The issue was addressed with improved memory handling.
CVE-2023-41981
The issue was addressed with improved memory handling.
CVE-2023-41984
A permissions issue was addressed with improved validation.
CVE-2023-40429
This issue was addressed with improved checks.
CVE-2023-40400
A permissions issue was addressed with additional restrictions.
CVE-2023-40454
An authorization issue was addressed with improved state management.
CVE-2023-41073
The issue was addressed with improved memory handling.
CVE-2023-40403
The issue was addressed with improved handling of caches.
CVE-2023-40427
An access issue was addressed with improved access restrictions.
CVE-2023-41068
The issue was addressed with improved checks.
CVE-2023-41986
The issue was addressed with improved checks.
CVE-2023-40456
The issue was addressed with improved memory handling.
CVE-2023-41063
The issue was addressed with improved checks.
CVE-2023-35990
A window management issue was addressed with improved state management.
CVE-2023-40417
The issue was addressed with improved bounds checks.
CVE-2023-40452
A logic issue was addressed with improved checks.
CVE-2023-41070
The issue was addressed with improved checks.
CVE-2023-40419
The issue was addressed with improved handling of caches.
CVE-2023-40428
The issue was addressed with improved checks.
CVE-2023-40443
This issue was addressed with improved validation of symlinks.
CVE-2023-41968
The issue was addressed with improved checks.
CVE-2023-40424
A use-after-free issue was addressed with improved memory management.
WebKit Bugzilla
The issue was addressed with improved checks.
WebKit Bugzilla
The issue was addressed with improved memory handling.
WebKit Bugzilla
Affected Devices
iPhone XS and later, iPad Pro 12.9-inch 2nd generation and later, iPad Pro 10.5-inch, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 6th generation and later, and iPad mini 5th generation and later
On successful exploitation, it could allow an attacker to execute code.
- HT213938 -
support.apple.com/en-in/HT213938
CVEs related to QID 610525
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| HT213938 | iOS |
|