Lucene search

K
cvelistAppleCVELIST:CVE-2022-42859
HistoryDec 15, 2022 - 12:00 a.m.

CVE-2022-42859

2022-12-1500:00:00
apple
www.cve.org
code issues
ios
ipados
macos
watchos
privacy bypass

6.9 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

40.5%

Multiple issues were addressed by removing the vulnerable code. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, watchOS 9.2. An app may be able to bypass Privacy preferences.

CNA Affected

[
  {
    "vendor": "Apple",
    "product": "macOS",
    "versions": [
      {
        "version": "unspecified",
        "lessThan": "13.1",
        "status": "affected",
        "versionType": "custom"
      }
    ]
  },
  {
    "vendor": "Apple",
    "product": "macOS",
    "versions": [
      {
        "version": "unspecified",
        "lessThan": "16.2",
        "status": "affected",
        "versionType": "custom"
      }
    ]
  },
  {
    "vendor": "Apple",
    "product": "watchOS",
    "versions": [
      {
        "version": "unspecified",
        "lessThan": "9.2",
        "status": "affected",
        "versionType": "custom"
      }
    ]
  }
]

6.9 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

40.5%

Related for CVELIST:CVE-2022-42859