CVE-2022-42838Operation on a Resource after Expiration or Release in Apple Macos

Severity
3.3LOWNVD
EPSS
0.2%
top 59.79%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 27

Description

An issue with app access to camera data was addressed with improved logic. This issue is fixed in macOS Ventura 13. A camera extension may be able to continue receiving video after the app which activated was closed.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NExploitability: 1.8 | Impact: 1.4

Affected Packages3 packages

CVEListV5apple/macosunspecified13
NVDapple/macos< 13.0

🔴Vulnerability Details

1
GHSA
GHSA-x34g-7f63-j8qp: An issue with app access to camera data was addressed with improved logic2023-02-27

📋Vendor Advisories

1
Apple
CVE-2022-42838: macOS Ventura 132022-10-24