First published: Wed Jan 26 2022(Updated: )
WebKit. A use after free issue was addressed with improved memory management.
Credit: Toan Pham Team Orca of Sea SecurityToan Pham Team Orca of Sea SecurityToan Pham Team Orca of Sea Security product-security@apple.com Toan Pham Team Orca of Sea SecurityToan Pham Team Orca of Sea Security product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS Monterey | <12.2 | 12.2 |
tvOS | <15.3 | 15.3 |
Apple Mobile Safari | <15.3 | 15.3 |
Apple Mobile Safari | <15.3 | |
Apple iOS, iPadOS, and watchOS | <15.3 | |
iOS | <15.3 | |
Apple iOS and macOS | >=12.0.0<12.2 | |
tvOS | <8.4 | |
Apple iOS, iPadOS, and watchOS | <8.4 | |
WebKitGTK+ | <2.36.7 | |
Apple Mobile Safari | <15.3 | |
Apple iOS, iPadOS, and watchOS | <15.3 | 15.3 |
Apple iOS, iPadOS, and watchOS | <15.3 | 15.3 |
Apple iOS, iPadOS, and watchOS | <8.4 | 8.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-22590 is a vulnerability in WebKit that involves a use-after-free issue that has been addressed with improved memory management.
CVE-2022-22590 affects Apple Safari version up to, but excluding, 15.3, watchOS version up to, but excluding, 8.4, Apple iOS version up to, but excluding, 15.3, Apple iPadOS version up to, but excluding, 15.3, Apple tvOS version up to, but excluding, 15.3, and Apple macOS Monterey version up to, but excluding, 12.2.
To fix the CVE-2022-22590 vulnerability, you should update your affected software to the latest available version provided by Apple.
You can find more information about CVE-2022-22590 on the official Apple support website. Here are some relevant links: [Link 1](https://support.apple.com/en-us/HT213054), [Link 2](https://support.apple.com/en-us/HT213053), [Link 3](https://support.apple.com/en-us/HT213058).
The Common Weakness Enumeration (CWE) ID for CVE-2022-22590 is 416.