CVE-2022-32945
published 2022-12-15CVE-2022-32945: An access issue was addressed with additional sandbox restrictions on third-party apps. This issue is fixed in macOS Ventura 13. An app may be able to record…
PriorityP416medium4.3CVSS 3.1
AVNACLPRNUIRSUCLINAN
EPSS
0.32%
24.5th percentile
An access issue was addressed with additional sandbox restrictions on third-party apps. This issue is fixed in macOS Ventura 13. An app may be able to record audio with paired AirPods.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_16.1_and_ipados | — | — |
| apple | ipados | < 16.0 | 16.0 |
| apple | iphone_os | < 16.1 | 16.1 |
| apple | macos | < 13.0 | 13.0 |
| apple | macos | >= unspecified < 13 | 13 |
| apple | macos_ventura | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2022-32945: macOS Ventura 13
vendor_apple·2022-10-24·CVSS 4.3
CVE-2022-32945 [MEDIUM] CVE-2022-32945: macOS Ventura 13
Apple Security Update: About the security content of macOS Ventura 13
Product: macOS Ventura
Version: 13
CVE: CVE-2022-32945
Component: Core Bluetooth
Impact: An app may be able to record audio with paired AirPods
Description: An access issue was addressed with additional sandbox restrictions on third-party apps.
Apple
CVE-2022-32945: iOS 16.1 and iPadOS 16
vendor_apple·2022-10-24·CVSS 4.3
CVE-2022-32945 [MEDIUM] CVE-2022-32945: iOS 16.1 and iPadOS 16
Apple Security Update: About the security content of iOS 16.1 and iPadOS 16
Product: iOS 16.1 and iPadOS
Version: 16
CVE: CVE-2022-32945
Component: Core Bluetooth
Impact: An app may be able to record audio with paired AirPods
Description: An access issue was addressed with additional sandbox restrictions on third party apps.
GHSA
GHSA-xh54-7xjp-2239: An access issue was addressed with additional sandbox restrictions on third-party apps
ghsa_unreviewed·2022-12-15
CVE-2022-32945 [MEDIUM] CWE-284 GHSA-xh54-7xjp-2239: An access issue was addressed with additional sandbox restrictions on third-party apps
An access issue was addressed with additional sandbox restrictions on third-party apps. This issue is fixed in macOS Ventura 13. An app may be able to record audio with paired AirPods.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-12-15
Published