CVE-2023-43010

Published Mar 12, 2026

Last updated a month ago

CVSS high 8.8
iOS
macOS Sonoma
Safari

Overview

AI description

Automated description summarized from trusted sources.

CVE-2023-43010 is a vulnerability found in WebKit, the browser engine used by Apple's Safari and other iOS applications. This issue was related to memory handling, where processing maliciously crafted web content could lead to memory corruption. Apple addressed this vulnerability by implementing improved memory handling. This WebKit flaw was part of a larger exploit kit known as "Coruna," which targeted older iPhone and iPad models that could not update to the latest iOS versions. Apple released security updates for these devices, including models like the iPhone 6s, iPhone 7, iPhone SE (1st generation), iPhone 8, iPhone 8 Plus, iPhone X, iPad Air 2, and iPad mini (4th generation), to backport the fix for CVE-2023-43010.

Description
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.2 and iPadOS 17.2, macOS Sonoma 14.2, Safari 17.2, iOS 16.7.15 and iPadOS 16.7.15, iOS 15.8.7 and iPadOS 15.8.7. Processing maliciously crafted web content may lead to memory corruption.
Source
product-security@apple.com
NVD status
Analyzed
Products
safari, ipados, iphone_os, macos

Risk scores

CVSS 3.1

Type
Secondary
Base score
8.8
Impact score
5.9
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

nvd@nist.gov
CWE-787

Social media

Hype score
Not currently trending
  1. Apple backported WebKit fixes for CVE-2023-43010update older iPhones, iPads & Macs now 🔒 Read More: https://t.co/7m2c66zPFC #iOS #macOS #PatchNow #Coruna

    @true_redfence

    16 Mar 2026

    51 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. Apple patched a WebKit flaw (CVE-2023-43010) used in the Coruna exploit kit, fixing memory corruption risk on older iOS, iPadOS, & macOS Sonoma versions. Stay updated! https://t.co/BYl1YJsPMg

    @technoholic_me

    16 Mar 2026

    61 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. The vulnerability, tracked as CVE-2023-43010, relates to an unspecified vulnerability in WebKit that could result in memory corruption when processing maliciously crafted web content. https://t.co/XaC5V5xlJW

    @HorstKrieger

    14 Mar 2026

    28 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. "patched .. underlying vulnerabilities in iOS updates .. over .. 2 years .. fixes for users who cannot update ..latest version. Specifically, iOS and iPadOS 15.8.7 patch 4 vulnerabilities: CVE-2023-41974, CVE-2024-23222, CVE-2023-43000, and CVE-2023-43010" https://t.co/xrdMU89

    @christinayiotis

    14 Mar 2026

    124 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. Apple Urgent : CVE-2023-43010 Exploitée par le Kit Coruna – Mise à Jour Immédiate pour iOS Legacy ! https://t.co/BPuodm4eHx

    @NicolasCoolman

    14 Mar 2026

    49 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. 🚨 Apple Security Update for Older Devices Apple released patches for older iPhones and iPads to fix a WebKit flaw (CVE-2023-43010) linked to the Coruna exploit kit. Update your devices to stay protected. 🔗 https://t.co/ITb26N79QH #CyberSecurity #AppleSecurity #iOSUpdate

    @techpio_team

    13 Mar 2026

    52 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. Apple has released security updates for older iOS and iPadOS versions to address CVE-2023-43010, a WebKit vulnerability exploited by the Coruna exploit kit. The updates include fixes for iOS 15.8.7 and iPadOS 15.8. https://t.co/yrLZ2SaSQq

    @securityRSS

    13 Mar 2026

    66 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. Apple on Wednesday backported fixes for a security flaw in iOS, iPadOS, and macOS Sonoma to older versions after it was found to be used as part of the Coruna exploit kit. The vulnerability, tracked as CVE-2023-43010, relates to an unspecified v... #News https://t.co/zLzX3gDNqV

    @PostGoo_News

    13 Mar 2026

    48 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. Top 5 Trending CVEs: 1 - CVE-2026-20127 2 - CVE-2023-43010 3 - CVE-2026-21385 4 - CVE-2025-68613 5 - CVE-2026-25185 #cve #cvetrends #cveshield #cybersecurity https://t.co/4Fua3CAN6W

    @CVEShield

    13 Mar 2026

    243 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  10. Apple backports iOS 17.2 fixes for Coruna exploit kit's CVE-2023-43010 WebKit flaw, tied to L3Harris and Russian Operation Zero, reusing 2023's Operation Triangulation exploits, reports Thehackernews. Source: https://t.co/VTz7B9ggc8 https://t.co/WDKHTQVOxw

    @LLMTalksTech

    13 Mar 2026

    0 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  11. 🚨 Apple Security Alert The Coruna WebKit exploit (CVE-2023-43010) targets older iPhones. 📱 iPhone 6s, 7, SE, 8 & X 🔐 Update to iOS 15.8.7 or iOS 16.7.15 Security tip from VaultEdge IT: Keep devices updated to reduce cyber risks. #CyberSecurity #AppleSecurity #Vau

    @VaultEdgeITMSP

    12 Mar 2026

    93 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  12. 🚨 Apple Security Alert Older iPhones targeted by the Coruna WebKit exploit (CVE-2023-43010). 📱 iPhone 6s, 7, SE, 8 & X affected 🔐 Update to iOS 15.8.7 or iOS 16.7.15 Always keep devices updated to stay protected. #CyberSecurity #Apple #iOS #TechNews https://t.co/

    @dalbeirthakur

    12 Mar 2026

    93 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  13. Apple liberó actualizaciones de seguridad para versiones antiguas de iOS y iPadOS tras identificarse el uso de la vulnerabilidad CVE-2023-43010 dentro del kit de explotación Coruna, que permite corrupción de memoria al procesar contenido web malicioso. Los parches se extendier

    @tpx_Security

    12 Mar 2026

    84 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  14. Appleが古いiOSへのセキュリティ更新を配信。WebKitの脆弱性CVE-2023-43010への対応のため。攻撃ツールCorunaに悪用されていたもの。脆弱性開示当初はiOS17向けの修正だったが、iOS15/16でも修正。 https://t.co/SkroE8xsrp

    @__kokumoto

    12 Mar 2026

    853 Impressions

    2 Retweets

    5 Likes

    2 Bookmarks

    1 Reply

    0 Quotes

  15. Apple backports fixes for CVE-2023-43010 on iOS/iPadOS/macOS Sonoma. Protect your devices from exploitation! 🛡️ #Cybersecurity #InfoSec #Vulnerability https://t.co/w1IzNHyLiA

    @cyberwatcher_

    12 Mar 2026

    1 Impression

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  16. ⚡ New CVE Alert: CVE-2023-43010 🚨 Risk Level: Unknown 🧩 Affects: Multiple / Unspecified Products Reference: https://t.co/6Anf1k0zYR #CVE-2023-43010 #CVE   #CyberSecurity #InfoSec https://t.co/L84VfKNY1J

    @CVEarity

    12 Mar 2026

    40 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  17. Apple has backported fixes for CVE-2023-43010 to older iPhones and iPads after the WebKit flaw was linked to the Coruna exploit kit. Legacy devices remain a target. Patch now. #Cybersecurity #AppleSecurity #VulnerabilityAlert #PatchManagement https://t.co/seReHRDM1M

    @CloneSystemsInc

    12 Mar 2026

    38 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  18. ⚠️ Apple parcheó CVE-2023-43010 en dispositivos antiguos: WebKit con corrupción de memoria, explotada activamente por el kit "Coruna". Si tenés un iPhone/iPad viejo sin actualizar, es el momento. 🔗 https://t.co/WU5ivMvg3s…

    @varosecurity

    12 Mar 2026

    13 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  19. 📌 أصدرت أبل تحديثات أمان لأجهزة iOS وiPadOS وmacOS Sonoma القديمة، بعد اكتشاف استخدامها ضمن مجموعة Coruna للهجمات. الثغرة CVE-2023-43010 في WebKit قد تسبب تلفاً للذاكرة عند معا

    @Cybercachear

    12 Mar 2026

    40 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  20. ⚡ Apple backports CVE-2023-43010 fix after the WebKit flaw was used in the Coruna #iPhone exploit kit. It allows memory corruption via malicious web content. Fix now covers iOS 15.8.7 & 16.7.15 devices, including iPhone 6s, 7, 8 & X. 🔗 Read → https... https://t.c

    @IT_news_for_all

    12 Mar 2026

    52 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  21. ⚡ Apple backports CVE-2023-43010 fix after the WebKit flaw was used in the Coruna #iPhone exploit kit. It allows memory corruption via malicious web content. Fix now covers iOS 15.8.7 & 16.7.15 devices, including iPhone 6s, 7, 8 & X. 🔗 Read → https://t.co/si2icbk

    @TheHackersNews

    12 Mar 2026

    8480 Impressions

    31 Retweets

    61 Likes

    12 Bookmarks

    3 Replies

    2 Quotes

  22. Adoi, Apple dah keluar update security penting untuk iPhone & iPad lama korang! 📱 Ada exploit jahat nama Coruna WebKit (CVE-2023-43010) yang target iOS 13-17.2.1, boleh buat memory corruption. Cepat update weh, kang tak pasal-pasal kantoi! https://t.co/t5mBQPyEqL

    @u_know_tekno

    12 Mar 2026

    35 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  23. CVE-2023-43010 The issue was addressed with improved memory handling. This issue is fixed in iOS 17.2 and iPadOS 17.2, macOS Sonoma 14.2, Safari 17.2, iOS 16.7.15 and iPadOS 16.7.15… https://t.co/nCTdzqXCow

    @CVEnew

    12 Mar 2026

    115 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations