PT-2022-21518 · Apple · Ipados+4
Mohamed Ghannam
+1
·
Published
2022-07-20
·
Updated
2023-01-09
·
CVE-2022-32845
CVSS v3.1
10
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
watchOS versions prior to 8.7
iOS versions prior to 15.6
iPadOS versions prior to 15.6
macOS Monterey versions prior to 12.5
Description
The issue allows an app to potentially break out of its sandbox, which could lead to unauthorized access or actions. This is due to an out-of-bounds read that was addressed with improved bounds checking.
Recommendations
For watchOS versions prior to 8.7, update to watchOS 8.7 to resolve the issue.
For iOS versions prior to 15.6, update to iOS 15.6 to resolve the issue.
For iPadOS versions prior to 15.6, update to iPadOS 15.6 to resolve the issue.
For macOS Monterey versions prior to 12.5, update to macOS Monterey 12.5 to resolve the issue.
Fix
Protection Mechanism Failure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apple Macos
Ios
Ipados
Macos Monterey
Watchos