CVE-2023-32370 – webkitgtk: content security policy blacklist failure
https://notcve.org/view.php?id=CVE-2023-32370
A logic issue was addressed with improved validation. This issue is fixed in macOS Ventura 13.3. Content Security Policy to block domains with wildcards may fail. Se abordó un problema de lógica con una comprobación mejorada. Este problema es corregido en macOS Ventura 13.3. • http://www.openwall.com/lists/oss-security/2023/09/11/1 https://security.gentoo.org/glsa/202401-04 https://support.apple.com/en-us/HT213670 https://access.redhat.com/security/cve/CVE-2023-32370 https://bugzilla.redhat.com/show_bug.cgi?id=2238944 •
CVE-2023-32426
https://notcve.org/view.php?id=CVE-2023-32426
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.3. An app may be able to gain root privileges. Se ha solucionado un problema lógico con comprobaciones mejoradas. Este problema se ha solucionado en macOS Ventura 13.3. • https://support.apple.com/en-us/HT213670 https://support.apple.com/kb/HT213670 • CWE-269: Improper Privilege Management •
CVE-2023-28210
https://notcve.org/view.php?id=CVE-2023-28210
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory. Se ha solucionado un problema de desbordamiento del búfer con una gestión mejorada de la memoria. Este problema se ha solucionado en macOS Ventura 13.3. • https://support.apple.com/en-us/HT213670 https://support.apple.com/kb/HT213670 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2023-28211
https://notcve.org/view.php?id=CVE-2023-28211
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory. Se ha solucionado un problema de desbordamiento del búfer con una gestión mejorada de la memoria. Este problema se ha solucionado en macOS Ventura 13.3. • https://support.apple.com/en-us/HT213670 https://support.apple.com/kb/HT213670 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2023-27950
https://notcve.org/view.php?id=CVE-2023-27950
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3. Processing an image may result in disclosure of process memory. Se solucionó una lectura fuera de límites con una validación de entrada mejorada. Este problema se solucionó en macOS Ventura 13.3. • https://support.apple.com/en-us/HT213670 https://support.apple.com/kb/HT213670 • CWE-125: Out-of-bounds Read •