First published: Mon Oct 24 2022(Updated: )
Apple Neural Engine. The issue was addressed with improved memory handling.
Credit: Mohamed Ghannam @_simo36 Mickey Jin @patch1t Csaba Fitzl @theevilbit Offensive SecurityAnonymous Trend Micro Zero Day InitiativeABC Research s.r.o. Jonathan Zhang Open Computing FacilityGuilherme Rambo Best Buddy AppsBistrit Dahal Asahi Lina @LinaAsahi Willy R. Vasquez The University of Texas at AustinPeter Pan ZhenPeng STAR LabsTingting Yin Tsinghua UniversityTommy Muir @Muirey03 Tim Michaud @TimGMichaud MoveworksXinru Chi Pangu LabJohn Aakerblom @jaakerblom Ian Beer Google Project ZeroZweig Kunlun Laban anonymous researcher Xingwei Lin @xwlin_roy Ant Security LightYinyi Wu Ant Security LightIES Red Team ByteDanceMir Masood Ali Illinois at ChicagoPhD student Illinois at ChicagoUniversity Illinois at ChicagoMS student Illinois at ChicagoStony Brook University; Mohammad Ghasemisharif Illinois at ChicagoPhD Candidate Illinois at ChicagoAssociate Professor Illinois at ChicagoStony Brook University; Jason Polakis Illinois at ChicagoJustin Bui @slyd0g SnowflakeCristian Dinca Tudor Vianu National High School of Computer Science ofFrancisco Alonso @revskills Jihwan Kim @gPayl0ad Dohyun Lee @l33d0hyun Dohyun Lee @l33d0hyun SSD LabsAbdulrahman Alqabandi Microsoft Browser Vulnerability ResearchRyan Shin IAAI SecLab at Korea UniversityDohyun Lee @l33d0hyun DNSLab at Korea UniversityYonghwi Jin at Theori @jinmo123 Trend Micro Zero Day InitiativeWonyoung Jung @nonetype_pwn KAIST Hacking LabDr Hideaki Goto Tohoku UniversityJapan Evgeny Legerov product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS, iPadOS, and watchOS | <16.1 | 16.1 |
Apple iOS, iPadOS, and watchOS | <16 | 16 |
Apple iOS, iPadOS, and watchOS | <15.7.1 | 15.7.1 |
Apple iOS, iPadOS, and watchOS | <15.7.1 | 15.7.1 |
Apple iOS, iPadOS, and watchOS | <9.1 | 9.1 |
Apple iOS, iPadOS, and watchOS | <15.7.1 | |
iStyle @cosme iPhone OS | <15.7.1 | |
iStyle @cosme iPhone OS | =16.0 | |
Apple iOS, iPadOS, and watchOS | <9.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-32932 is a vulnerability in Apple Neural Engine that was addressed with improved memory handling.
CVE-2022-32932 affects Apple iOS versions up to exclusive 16.1, Apple iPadOS versions up to exclusive 16, and Apple watchOS versions up to exclusive 9.1.
To fix CVE-2022-32932, update your Apple device to iOS 16.1, iPadOS 16, or watchOS 9.1.
You can find more information about CVE-2022-32932 on the Apple support website at the following links: [link1](https://support.apple.com/en-us/HT213489), [link2](https://support.apple.com/en-us/HT213491), [link3](https://support.apple.com/en-us/HT213490).