First published: Mon May 16 2022(Updated: )
A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.5, watchOS 8.6, iOS 15.5 and iPadOS 15.5, macOS Monterey 12.4, Safari 15.5, iTunes 12.12.4 for Windows. Processing maliciously crafted web content may lead to arbitrary code execution.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple watchOS | <8.6 | 8.6 |
Apple tvOS | <15.5 | 15.5 |
<12.4 | 12.4 | |
Apple iOS | <15.5 | 15.5 |
Apple iPadOS | <15.5 | 15.5 |
Apple iTunes for Windows | <12.12.4 | 12.12.4 |
Apple Safari | <15.5 | 15.5 |
Apple iTunes | <12.12.4 | |
Apple Safari | <15.5 | |
Apple iPadOS | <15.5 | |
Apple iPhone OS | <15.5 | |
Apple macOS | >=12.0.0<12.4 | |
Apple tvOS | <15.5 | |
Apple watchOS | <8.6 | |
debian/webkit2gtk | 2.36.4-1~deb10u1 2.38.6-0+deb10u1 2.40.5-1~deb11u1 2.42.1-1~deb11u2 2.40.5-1~deb12u1 2.42.1-1~deb12u1 2.42.1-2 | |
debian/wpewebkit | 2.38.6-1~deb11u1 2.38.6-1 2.42.1-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
CVE-2022-26717 is a vulnerability in WebKit that allows for a use after free issue due to inadequate memory management.
CVE-2022-26717 affects Apple Safari versions up to but excluding 15.5, Apple watchOS versions up to but excluding 8.6, Apple tvOS versions up to but excluding 15.5, macOS Monterey versions up to but excluding 12.4, Apple iOS versions up to but excluding 15.5, Apple iPadOS versions up to but excluding 15.5, and iTunes for Windows versions up to but excluding 12.12.4.
The severity of CVE-2022-26717 is not specified in the provided information.
To fix CVE-2022-26717, it is recommended to update to the latest version of the affected software as per the remediation information provided.
More information about CVE-2022-26717 can be found on the official Apple support website using the provided references.