cbcvebase.
CVE-2022-22629
published 2022-09-23

CVE-2022-22629: A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iTunes 12.12.3 for…

high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iTunes 12.12.3 for Windows, iOS 15.4 and iPadOS 15.4, tvOS 15.4. Processing maliciously crafted web content may lead to arbitrary code execution.

Affected

20 ranges
VendorProductVersion rangeFixed in
appleios_15.4_and_ipados
appleipados< 15.415.4
appleiphone_os< 15.415.4
appleitunes< 12.12.312.12.3
appleitunes_12.12.3_for_windows
applemacos>= 12.0.0 < 12.312.3
applemacos_monterey
applesafari< 15.415.4
applesafari
applesafari>= unspecified < 15.415.4
appletvos< 15.415.4
appletvos
appletvos>= unspecified < 15.415.4
appletvos>= unspecified < 12.312.3
applewatchos< 8.58.5
applewatchos
applewatchos>= unspecified < 8.58.5
applewatchos>= unspecified < 12.1212.12
debianwebkit2gtk< webkit2gtk 2.36.0-1 (bookworm)webkit2gtk 2.36.0-1 (bookworm)
debianwpewebkit< webkit2gtk 2.36.0-1 (bookworm)webkit2gtk 2.36.0-1 (bookworm)

CVSS provenance

nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH