About the security content of Safari 17.2 – Apple Support

About the security content of Safari 17.2 - Apple Support

December 11, 2023 at 04:21PM

Summary:

Apple has released updates for macOS Monterey and macOS Ventura to address security vulnerabilities in WebKit. The vulnerabilities could lead to arbitrary code execution when processing web content (CVE-2023-42890) and denial-of-service when processing an image (CVE-2023-42883). The issues were resolved with improved memory handling.

Based on the meeting notes, here are the key takeaways:

1. Release Date for the update: 2023-12-11
2. Two CVEs (CVE-2023-42890 and CVE-2023-42883) were discussed, both of which were addressed with improved memory handling.
3. Impact of CVE-2023-42890: Processing web content may lead to arbitrary code execution. Affected product: WebKit.
4. Impact of CVE-2023-42883: Processing an image may lead to a denial-of-service. Affected product: WebKit.
5. Update available for: macOS Monterey and macOS Ventura.

Please let me know if there’s anything else you need assistance with.

Full Article