#VU72161 Type Confusion in Apple iOS and iPadOS - CVE-2023-23529
Published: February 13, 2023 / Updated: April 19, 2023
Apple iOS
iPadOS
Apple Inc.
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a type confusion error when parsing web content in WebKit. A remote attacker can trick the victim to visit a specially crafted website, trigger a type confusion error and execute arbitrary code on the target system.
Note, the vulnerability is being actively exploited in the wild.