CVE-2022-26744

A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 15.5 and iPadOS 15.5. An application may be able to execute arbitrary code with kernel privileges.
References
Link Resource
http://seclists.org/fulldisclosure/2022/Oct/39 Mailing List Third Party Advisory
https://support.apple.com/en-us/HT213258 Vendor Advisory
https://support.apple.com/kb/HT213446 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

History

16 Nov 2022, 17:14

Type Values Removed Values Added
References (CONFIRM) https://support.apple.com/kb/HT213446 - (CONFIRM) https://support.apple.com/kb/HT213446 - Vendor Advisory
References (FULLDISC) http://seclists.org/fulldisclosure/2022/Oct/39 - (FULLDISC) http://seclists.org/fulldisclosure/2022/Oct/39 - Mailing List, Third Party Advisory

30 Oct 2022, 23:15

Type Values Removed Values Added
References
  • (FULLDISC) http://seclists.org/fulldisclosure/2022/Oct/39 -

27 Oct 2022, 20:15

Type Values Removed Values Added
References
  • (CONFIRM) https://support.apple.com/kb/HT213446 -

07 Jun 2022, 20:26

Type Values Removed Values Added
References (MISC) https://support.apple.com/en-us/HT213258 - (MISC) https://support.apple.com/en-us/HT213258 - Vendor Advisory
CPE cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 9.3
v3 : 7.8
CWE CWE-787
First Time Apple ipados
Apple iphone Os
Apple

26 May 2022, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-05-26 20:15

Updated : 2023-12-10 14:22


NVD link : CVE-2022-26744

Mitre link : CVE-2022-26744

CVE.ORG link : CVE-2022-26744


JSON object : View

Products Affected

apple

  • iphone_os
  • ipados
CWE
CWE-787

Out-of-bounds Write