CVE-2022-32830Out-of-bounds Read in Apple Tvos

CWE-125Out-of-bounds Read4 documents3 sources
Severity
7.5HIGHNVD
EPSS
0.3%
top 42.65%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 27

Description

An out-of-bounds read issue was addressed with improved bounds checking. This issue is fixed in tvOS 15.6, iOS 15.6 and iPadOS 15.6. Processing a maliciously crafted image may lead to disclosure of user information.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages6 packages

CVEListV5apple/tvosunspecified15.6
NVDapple/tvos< 15.6
NVDapple/ipados< 15.6
Appleapple/tvos15.6

🔴Vulnerability Details

1
GHSA
GHSA-wf4c-f488-7hm7: An out-of-bounds read issue was addressed with improved bounds checking2023-02-27

📋Vendor Advisories

2
Apple
CVE-2022-32830: tvOS 15.62022-07-20
Apple
CVE-2022-32830: iOS 15.6 and iPadOS 15.62022-07-20