← All CVEs

CVE-2022-46689

high · 7

A race condition was addressed with additional validation. This issue is fixed in tvOS 16.2, macOS Monterey 12.6.2, macOS Ventura 13.1, macOS Big Sur 11.7.2, iOS 15.7.2 and iPadOS 15.7.2, iOS 16.2 and iPadOS 16.2, watchOS 9.2. An app may be able to execute arbitrary code with kernel privileges.

7
CVSS
44.7%
EPSS (exploit prob.)
99th
EPSS percentile
2022-12-15
Published

CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

Weaknesses

CWE-362

Affected products

VendorProductAffected versions
applesafari< 16.2
appleipados< 15.7.2
appleiphone_os< 15.7.2
appleiphone_os>= 16.0, < 16.1.2
applemacos< 11.7.2
applemacos>= 12.0, < 12.6.2
applemacos>= 13.0, < 13.1
appletvos< 16.2
applewatchos< 9.2

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2022-46689