CVE-2023-40414

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jan 10, 2024
Updated: Feb 6, 2024
CWE ID 416

Summary

CVE-2023-40414 is a use-after-free vulnerability that has been addressed through improved memory management in watchOS 10, iOS 17, iPadOS 17, tvOS 17, and macOS Sonoma 14. This issue, which can lead to arbitrary code execution, was particularly relevant to the processing of web content. By taking advantage of this vulnerability, attackers could potentially inject malicious code into affected systems. Users are advised to update their operating systems as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share