Description


A buffer overflow issue was addressed with improved memory handling. This issue is fixed in Safari 16, iOS 16, iOS 15.7 and iPadOS 15.7. Processing maliciously crafted web content may lead to arbitrary code execution.

Related CPE's


Vulnerable

Vulnerable

Vulnerable

o

fedoraproject

fedora

3

o

debian

debian_linux

2

References




http://seclists.org/fulldisclosure/2022/Oct/41

Mailing ListThird Party Advisory






https://support.apple.com/en-us/HT213442

Release NotesVendor Advisory

https://support.apple.com/en-us/HT213445

Release NotesVendor Advisory

https://support.apple.com/en-us/HT213446

Release NotesVendor Advisory

https://www.debian.org/security/2022/dsa-5240

Mailing ListThird Party Advisory

https://www.debian.org/security/2022/dsa-5241

Mailing ListThird Party Advisory



http://seclists.org/fulldisclosure/2022/Oct/41

Mailing ListThird Party Advisory






https://support.apple.com/en-us/HT213442

Release NotesVendor Advisory

https://support.apple.com/en-us/HT213445

Release NotesVendor Advisory

https://support.apple.com/en-us/HT213446

Release NotesVendor Advisory

https://www.debian.org/security/2022/dsa-5240

Mailing ListThird Party Advisory

https://www.debian.org/security/2022/dsa-5241

Mailing ListThird Party Advisory

Weaknesses



CWE-787


CWE-787

CVSS impact metrics


CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

8.8 · High

  • CVSS V3.1

  • CVSS V3.0

  • CVSS V2.0

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2022-09-20T21:15:11.037

3 years ago

Last modified

2025-05-29T15:15:21.823

6 months ago