First published: Wed Jan 26 2022(Updated: )
WebKit. A use after free issue was addressed with improved memory management.
Credit: Toan Pham Team Orca of Sea SecurityToan Pham Team Orca of Sea SecurityToan Pham Team Orca of Sea Security product-security@apple.com Toan Pham Team Orca of Sea SecurityToan Pham Team Orca of Sea Security product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Safari | <15.3 | 15.3 |
Apple macOS Monterey | <12.2 | 12.2 |
Apple watchOS | <8.4 | 8.4 |
Apple iPadOS | <15.3 | |
Apple iPhone OS | <15.3 | |
Apple macOS | >=12.0.0<12.2 | |
Apple Safari | <15.3 | |
Apple tvOS | <8.4 | |
Apple watchOS | <8.4 | |
Apple tvOS | <15.3 | 15.3 |
Apple iOS | <15.3 | 15.3 |
Apple iPadOS | <15.3 | 15.3 |
Apple Safari | <15.3 | |
WebKitGTK WebKitGTK | <2.36.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-22590 is a vulnerability in WebKit that involves a use-after-free issue that has been addressed with improved memory management.
CVE-2022-22590 affects Apple Safari version up to, but excluding, 15.3, watchOS version up to, but excluding, 8.4, Apple iOS version up to, but excluding, 15.3, Apple iPadOS version up to, but excluding, 15.3, Apple tvOS version up to, but excluding, 15.3, and Apple macOS Monterey version up to, but excluding, 12.2.
To fix the CVE-2022-22590 vulnerability, you should update your affected software to the latest available version provided by Apple.
You can find more information about CVE-2022-22590 on the official Apple support website. Here are some relevant links: [Link 1](https://support.apple.com/en-us/HT213054), [Link 2](https://support.apple.com/en-us/HT213053), [Link 3](https://support.apple.com/en-us/HT213058).
The Common Weakness Enumeration (CWE) ID for CVE-2022-22590 is 416.