CVE Vulnerabilities

CVE-2022-42837

Published: Dec 15, 2022 | Modified: Jun 08, 2023
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, iOS 15.7.2 and iPadOS 15.7.2, watchOS 9.2. A remote user may be able to cause unexpected app termination or arbitrary code execution.

Affected Software

Name Vendor Start Version End Version
Ipados Apple 15.0 (including) 15.7.2 (excluding)
Ipados Apple 16.0 (including) 16.2 (excluding)
Iphone_os Apple 15.0 (including) 15.7.2 (excluding)
Iphone_os Apple 16.0 (including) 16.2 (excluding)
Macos Apple 13.0 (including) 13.0 (including)
Watchos Apple * 9.2 (excluding)

References