CVE-2022-32912
CVE-2022-32912
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 8.8EPSS 1.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
20 Sep 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Safari 16, iOS 16, iOS 15.7 and iPadOS 15.7. Processing maliciously crafted web content may lead to arbitrary code execution.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://seclists.org/fulldisclosure/2022/Oct/28http://seclists.org/fulldisclosure/2022/Oct/39http://seclists.org/fulldisclosure/2022/Oct/40http://seclists.org/fulldisclosure/2022/Oct/41http://seclists.org/fulldisclosure/2022/Oct/47http://seclists.org/fulldisclosure/2022/Oct/49http://seclists.org/fulldisclosure/2022/Oct/50https://support.apple.com/en-us/HT213442https://support.apple.com/en-us/HT213445https://support.apple.com/en-us/HT213446