First published: Tue Dec 13 2022(Updated: )
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1. An app may be able to break out of its sandbox
Credit: Yonghwi Jin @jinmo123 TheoriYonghwi Jin @jinmo123 Theori product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <16.2 | 16.2 |
Apple iPadOS | <16.2 | 16.2 |
<13.1 | 13.1 | |
Apple iPadOS | <16.2 | |
Apple iPhone OS | <16.2 | |
Apple macOS | <13.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this issue is CVE-2022-46720.
The title of this vulnerability is 'dyld. An integer overflow was addressed with improved input validation.'
The description of this vulnerability is that an integer overflow was addressed with improved input validation and it can allow an app to break out of its sandbox.
The macOS Ventura 13.1, Apple iOS up to version 16.2, and Apple iPadOS up to version 16.2 are affected by this vulnerability.
You can fix this vulnerability by updating your software to iOS 16.2 and iPadOS 16.2, or macOS Ventura 13.1.