IT

Tracker / CVE-2023-44216

CVE-2023-44216

Medium 5.3

PVRIC (PowerVR Image Compression) on Imagination 2018 and later GPU devices offers software-transparent compression that enables cross-origin pixel-stealing attacks against feTurbulence and feBlend in the SVG Filter specification, aka a GPU.zip issue. For example, attackers can sometimes accurately determine text contained on a web page from one origin if they control a resource from a different origin.

Affected products and versions

amd ryzen_5_7600x
amd ryzen_7_4800u
apple m1_mac_mini
apple macos
canonical ubuntu_linux
google android
google pixel_6
intel core_i7-10510u
intel core_i7-10610u
intel core_i7-11800h
intel core_i7-12700k
intel core_i7-8700
microsoft windows_10
microsoft windows_11
nvidia geforce_rtx_2080_super
nvidia geforce_rtx_3060

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References