PT-2022-26626 · Apple · Ipados+3

Mickey Jin

+1

·

Published

2022-12-15

·

Updated

2025-04-21

·

CVE-2022-42849

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions iOS versions prior to 16.2 iPadOS versions prior to 16.2 tvOS versions prior to 16.2 watchOS versions prior to 9.2
Description An access issue existed with privileged API calls, allowing a user to potentially elevate privileges. This issue was addressed with additional restrictions.
Recommendations For iOS versions prior to 16.2, update to iOS 16.2 or later to resolve the issue. For iPadOS versions prior to 16.2, update to iPadOS 16.2 or later to resolve the issue. For tvOS versions prior to 16.2, update to tvOS 16.2 or later to resolve the issue. For watchOS versions prior to 9.2, update to watchOS 9.2 or later to resolve the issue.

Fix

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-42849

Affected Products

Ios
Ipados
Tvos
Watchos