CVE-2022-24071: Medium severity naver whale browser vulnerability
Published Jan 28, 2022
·Updated
A Built-in extension in Whale browser before 3.12.129.46 allows attackers to compromise the rendering process which could lead to controlling browser internal APIs.
Affected Software
1 affected component
Navercorp Whale Iphone Os<1.14.0
Event History
Jan 28, 2022
CVE Published
via MITRE·10:04 AM
Data Sourced
via MITRE·10:04 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-24071?
CVE-2022-24071 is considered to be a high severity vulnerability due to its potential to compromise the rendering process of the Whale browser.
2
How do I fix CVE-2022-24071?
To fix CVE-2022-24071, users should update their Whale browser to version 3.12.129.46 or later.
3
What systems are affected by CVE-2022-24071?
CVE-2022-24071 affects the Whale browser on iPhone OS versions prior to 1.14.0.
4
What are the potential impacts of CVE-2022-24071?
The potential impacts of CVE-2022-24071 include unauthorized control over internal browser APIs, leading to exploitation risks.
5
Who is the vendor for CVE-2022-24071?
The vendor for CVE-2022-24071 is Navercorp, the developer of the Whale browser.