PT-2022-27956 · Apple · Ipados+3

Andrey Labunets

+1

·

Published

2022-12-15

·

Updated

2023-01-09

·

CVE-2022-46694

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions iOS versions prior to 16.2 iPadOS versions prior to 16.2 iOS versions prior to 15.7.2 iPadOS versions prior to 15.7.2 tvOS versions prior to 16.2 watchOS versions prior to 9.2
Description An out-of-bounds write issue was addressed with improved input validation. Parsing a maliciously crafted video file may lead to kernel code execution.
Recommendations For iOS versions prior to 16.2, update to iOS 16.2 or later. For iPadOS versions prior to 16.2, update to iPadOS 16.2 or later. For iOS versions prior to 15.7.2, update to iOS 15.7.2 or later. For iPadOS versions prior to 15.7.2, update to iPadOS 15.7.2 or later. For tvOS versions prior to 16.2, update to tvOS 16.2 or later. For watchOS versions prior to 9.2, update to watchOS 9.2 or later.

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2022-46694

Affected Products

Ios
Ipados
Tvos
Watchos