CVE-2022-32916

CWE-125Out-of-bounds Read4 documents4 sources
Severity
5.5MEDIUM
EPSS
0.1%
top 75.95%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 15

Description

An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in iOS 16. An app may be able to disclose kernel memory.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

CVEListV5apple/iosunspecified16
NVDapple/iphone_os< 16.0

🔴Vulnerability Details

2
CVEList
CVE-2022-32916: An out-of-bounds read issue existed that led to the disclosure of kernel memory2022-12-15
GHSA
GHSA-hcxx-gj94-jr34: An out-of-bounds read issue existed that led to the disclosure of kernel memory2022-12-15

📋Vendor Advisories

1
Apple
CVE-2022-32916: iOS 162022-09-12
CVE-2022-32916 (MEDIUM CVSS 5.5) | An out-of-bounds read issue existed | cvebase.io