First published: Mon Oct 24 2022(Updated: )
A logic issue was addressed with improved checks. This issue is fixed in tvOS 16.1, iOS 15.7.1 and iPadOS 15.7.1, macOS Ventura 13, watchOS 9.1, iOS 16.1 and iPadOS 16, macOS Monterey 12.6.1. An app may be able to execute arbitrary code with kernel privileges.
Credit: Ian Beer Google Project ZeroIan Beer Google Project ZeroIan Beer Google Project ZeroIan Beer Google Project ZeroIan Beer Google Project ZeroIan Beer Google Project Zero product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
<13 | 13 | |
Apple iOS | <16.1 | 16.1 |
Apple iPadOS | <16 | 16 |
Apple iOS | <15.7.1 | 15.7.1 |
Apple iPadOS | <15.7.1 | 15.7.1 |
Apple watchOS | <9.1 | 9.1 |
Apple tvOS | <16.1 | 16.1 |
Apple macOS Monterey | <12.6.1 | 12.6.1 |
Apple iPadOS | <5.7.1 | |
Apple iPhone OS | <5.7.1 | |
Apple macOS | >=12.0<12.6.1 | |
Apple tvOS | <16.1 | |
Apple watchOS | <9.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
The vulnerability ID for this issue is CVE-2022-42801.
The affected software includes Apple iOS up to version 16.1, Apple iPadOS up to version 16, Apple macOS Monterey up to version 12.6.1, Apple iOS up to version 15.7.1, Apple iPadOS up to version 15.7.1, Apple tvOS up to version 16.1, Apple macOS Ventura up to version 13, and Apple watchOS up to version 9.1.
The severity of CVE-2022-42801 is not mentioned.
To fix this vulnerability, update your Apple iOS, Apple iPadOS, Apple macOS Monterey, Apple tvOS, Apple macOS Ventura, and Apple watchOS to the latest available versions.
You can find more information about this vulnerability on the Apple support website at the following URLs: - [support.apple.com/en-us/HT213494](https://support.apple.com/en-us/HT213494) - [support.apple.com/en-us/HT213489](https://support.apple.com/en-us/HT213489) - [support.apple.com/en-us/HT213491](https://support.apple.com/en-us/HT213491)