PT-2022-21594 · Apple · Ipados+3
Cristian Dinca
·
Published
2022-10-24
·
Updated
2023-01-09
·
CVE-2022-32938
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
iOS versions prior to 16.1
iPadOS versions prior to 16
macOS Ventura versions prior to 13
Description
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue may allow a shortcut to check the existence of an arbitrary path on the file system.
Recommendations
For iOS versions prior to 16.1, update to iOS 16.1 or later.
For iPadOS versions prior to 16, update to iPadOS 16 or later.
For macOS Ventura versions prior to 13, update to macOS Ventura 13 or later.
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apple Macos
Ios
Ipados
Macos Ventura