Lucene search

K
ubuntucveUbuntu.comUB:CVE-2022-22677
HistoryJul 07, 2022 - 12:00 a.m.

CVE-2022-22677

2022-07-0700:00:00
ubuntu.com
ubuntu.com
28
logic issue handling
macos monterey 12.4
ios 15.5
ipados 15.5
webrtc
phone call interrupted

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

EPSS

0.001

Percentile

41.4%

A logic issue in the handling of concurrent media was addressed with
improved state handling. This issue is fixed in macOS Monterey 12.4, iOS
15.5 and iPadOS 15.5. Video self-preview in a webRTC call may be
interrupted if the user answers a phone call.

Notes

Author Note
jdstrand webkit receives limited support. For details, see https://wiki.ubuntu.com/SecurityTeam/FAQ#webkit webkit in Ubuntu uses the JavaScriptCore (JSC) engine, not V8
OSVersionArchitecturePackageVersionFilename
ubuntu20.04noarchwebkit2gtk< 2.36.4-0ubuntu0.20.04.1UNKNOWN
ubuntu22.04noarchwebkit2gtk< 2.36.4-0ubuntu0.22.04.1UNKNOWN

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

EPSS

0.001

Percentile

41.4%