First published: Wed Jul 20 2022(Updated: )
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5. An app may be able to execute arbitrary code with kernel privileges.
Credit: Mohamed Ghannam @_simo36 Mohamed Ghannam @_simo36 product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
<12.5 | 12.5 | |
Apple iOS | <15.6 | 15.6 |
Apple iPadOS | <15.6 | 15.6 |
Apple iPadOS | <15.6 | |
Apple iPhone OS | <15.6 | |
Apple macOS | >=12.0.0<12.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-42805 is a vulnerability in Apple Neural Engine that was addressed with improved input validation.
CVE-2022-42805 affects Apple iOS, iPadOS, and macOS Monterey versions up to 15.6 and 12.5 respectively.
The severity of CVE-2022-42805 is not specified.
To fix CVE-2022-42805, Apple users should update their devices to the latest version of iOS, iPadOS, or macOS Monterey.
More information about CVE-2022-42805 can be found on the Apple support website.