CVE-2022-42829
published 2022-11-01CVE-2022-42829: A use after free issue was addressed with improved memory management. This issue is fixed in iOS 16.1 and iPadOS 16, macOS Ventura 13. An app with root…
PriorityP433medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
0.31%
22.7th percentile
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 16.1 and iPadOS 16, macOS Ventura 13. An app with root privileges may be able to execute arbitrary code with kernel privileges.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_16.1_and_ipados | — | — |
| apple | ipados | < 16.0 | 16.0 |
| apple | iphone_os | < 16.1 | 16.1 |
| apple | macos | < 13.0 | 13.0 |
| apple | macos | >= unspecified < 13 | 13 |
| apple | macos | >= unspecified < 16.1 | 16.1 |
| apple | macos_ventura | — | — |
CVSS provenance
nvdv3.16.7MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: scsi: scsi_transport_sas: Fix error handling in sas_phy_add()
vendor_redhat·2025-05-01·CVSS 5.5
CVE-2022-49839 [MEDIUM] CWE-476 kernel: scsi: scsi_transport_sas: Fix error handling in sas_phy_add()
kernel: scsi: scsi_transport_sas: Fix error handling in sas_phy_add()
In the Linux kernel, the following vulnerability has been resolved:
scsi: scsi_transport_sas: Fix error handling in sas_phy_add()
If transport_add_device() fails in sas_phy_add(), the kernel will crash
trying to delete the device in transport_remove_device() called from
sas_remove_host().
Unable to handle kernel NULL pointer dereference at virtual address 0000000000000108
CPU: 61 PID: 42829 Comm: rmmod Kdump: loaded Tainted: G W 6.1.0-rc1+ #173
pstate: 60000005 (nZCv daif -PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : device_del+0x54/0x3d0
lr : device_del+0x37c/0x3d0
Call trace:
device_del+0x54/0x3d0
attribute_container_class_device_del+0x28/0x38
transport_remove_classdev+0x6c/0x80
attribute_container_device_trigger+0x108/0x1
Apple
CVE-2022-42829: macOS Ventura 13
vendor_apple·2022-10-24·CVSS 6.7
CVE-2022-42829 [MEDIUM] CVE-2022-42829: macOS Ventura 13
Apple Security Update: About the security content of macOS Ventura 13
Product: macOS Ventura
Version: 13
CVE: CVE-2022-42829
Component: Photos
Impact: An app may be able to bypass Privacy preferences
Description: This issue was addressed with improved data protection.
Apple
CVE-2022-42829: iOS 16.1 and iPadOS 16
vendor_apple·2022-10-24·CVSS 6.7
CVE-2022-42829 [MEDIUM] CVE-2022-42829: iOS 16.1 and iPadOS 16
Apple Security Update: About the security content of iOS 16.1 and iPadOS 16
Product: iOS 16.1 and iPadOS
Version: 16
CVE: CVE-2022-42829
Component: NetworkExtension
Impact: An app may be able to bypass certain Privacy preferences
Description: A logic issue was addressed with improved checks.
GHSA
GHSA-mxxh-6gv3-x6rm: A use after free issue was addressed with improved memory management
ghsa_unreviewed·2022-11-02
CVE-2022-42829 [MEDIUM] CWE-416 GHSA-mxxh-6gv3-x6rm: A use after free issue was addressed with improved memory management
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 16.1 and iPadOS 16, macOS Ventura 13. An app with root privileges may be able to execute arbitrary code with kernel privileges.
No detection rules found.
No public exploits indexed.
2022-11-01
Published