Lucene search

K
githubexploit93E2D30A-F520-58CB-9C5E-D4D8D45BFFEA
HistoryDec 26, 2022 - 6:56 a.m.

Exploit for Race Condition in Apple Safari

2022-12-2606:56:35
453
ios security
font exploit
race condition
cve-2022-46689
ios 16.1.2
font overwrite
ported fonts
ipa
woff2
brotli
built-in fonts issues
file pickers
font conversion
ian beer
apple

CVSS3

7

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

6.9

Confidence

High

EPSS

0.006

Percentile

78.6%

Proof-of-concept app to overwrite fonts on iOS using [CVE-2022-4…

This is an article that belongs to githubexploit private collection.
Please sign in to get more Information.

CVSS3

7

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

6.9

Confidence

High

EPSS

0.006

Percentile

78.6%