CVE-2022-42843
published 2022-12-15CVE-2022-42843: This issue was addressed with improved data protection. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, tvOS 16.2, watchOS 9.2. A user may…
PriorityP423medium5.5CVSS 3.1
AVLACLPRNUIRSUCHINAN
EPSS
0.38%
30.7th percentile
This issue was addressed with improved data protection. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, tvOS 16.2, watchOS 9.2. A user may be able to view sensitive user information.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_16.2_and_ipados | — | — |
| apple | ipados | < 16.2 | 16.2 |
| apple | iphone_os | < 16.2 | 16.2 |
| apple | macos | — | — |
| apple | macos_ventura | — | — |
| apple | tvos | < 16.2 | 16.2 |
| apple | tvos | >= unspecified < 16.2 | 16.2 |
| apple | tvos | >= unspecified < 13.1 | 13.1 |
| apple | tvos16.2 | — | — |
| apple | watchos | < 9.2 | 9.2 |
| apple | watchos | — | — |
| apple | watchos | >= unspecified < 9.2 | 9.2 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2022-42843: iOS 16.2 and iPadOS 16.2
vendor_apple·2022-12-13·CVSS 5.5
CVE-2022-42843 [MEDIUM] CVE-2022-42843: iOS 16.2 and iPadOS 16.2
Apple Security Update: About the security content of iOS 16.2 and iPadOS 16.2
Product: iOS 16.2 and iPadOS
Version: 16.2
CVE: CVE-2022-42843
Component: Accounts
Impact: A user may be able to view sensitive user information
Description: This issue was addressed with improved data protection.
Apple
CVE-2022-42843: watchOS 9.2
vendor_apple·2022-12-13·CVSS 5.5
CVE-2022-42843 [MEDIUM] CVE-2022-42843: watchOS 9.2
Apple Security Update: About the security content of watchOS 9.2
Product: watchOS
Version: 9.2
CVE: CVE-2022-42843
Component: Accounts
Impact: A user may be able to view sensitive user information
Description: This issue was addressed with improved data protection.
Apple
CVE-2022-42843: macOS Ventura 13.1
vendor_apple·2022-12-13·CVSS 5.5
CVE-2022-42843 [MEDIUM] CVE-2022-42843: macOS Ventura 13.1
Apple Security Update: About the security content of macOS Ventura 13.1
Product: macOS Ventura
Version: 13.1
CVE: CVE-2022-42843
Component: Accounts
Impact: A user may be able to view sensitive user information
Description: This issue was addressed with improved data protection.
Apple
CVE-2022-42843: tvOS16.2
vendor_apple·2022-12-13·CVSS 5.5
CVE-2022-42843 [MEDIUM] CVE-2022-42843: tvOS16.2
Apple Security Update: About the security content of tvOS16.2
Product: tvOS16.2
CVE: CVE-2022-42843
Component: Accounts
Impact: A user may be able to view sensitive user information
Description: This issue was addressed with improved data protection.
GHSA
GHSA-4hf4-g256-gxvm: This issue was addressed with improved data protection
ghsa_unreviewed·2022-12-15
CVE-2022-42843 [MEDIUM] CWE-200 GHSA-4hf4-g256-gxvm: This issue was addressed with improved data protection
This issue was addressed with improved data protection. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, tvOS 16.2, watchOS 9.2. A user may be able to view sensitive user information.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://seclists.org/fulldisclosure/2022/Dec/20http://seclists.org/fulldisclosure/2022/Dec/23http://seclists.org/fulldisclosure/2022/Dec/26http://seclists.org/fulldisclosure/2022/Dec/27https://support.apple.com/en-us/HT213530https://support.apple.com/en-us/HT213532https://support.apple.com/en-us/HT213535https://support.apple.com/en-us/HT213536http://seclists.org/fulldisclosure/2022/Dec/20http://seclists.org/fulldisclosure/2022/Dec/23http://seclists.org/fulldisclosure/2022/Dec/26http://seclists.org/fulldisclosure/2022/Dec/27https://support.apple.com/en-us/HT213530https://support.apple.com/en-us/HT213532https://support.apple.com/en-us/HT213535https://support.apple.com/en-us/HT213536
2022-12-15
Published