CVE-2022-32814

A type confusion issue was addressed with improved state handling. This issue is fixed in watchOS 8.7, tvOS 15.6, iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5. An app may be able to execute arbitrary code with kernel privileges.
References
Link Resource
https://support.apple.com/en-us/HT213340 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213342 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213345 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213346 Release Notes Vendor Advisory
https://support.apple.com/kb/HT213344 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

12 Jan 2023, 20:09

Type Values Removed Values Added
References (CONFIRM) https://support.apple.com/kb/HT213344 - (CONFIRM) https://support.apple.com/kb/HT213344 - Release Notes, Vendor Advisory

10 Nov 2022, 07:15

Type Values Removed Values Added
References
  • (CONFIRM) https://support.apple.com/kb/HT213344 -

27 Sep 2022, 04:45

Type Values Removed Values Added
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
First Time Apple macos
Apple ipados
Apple watchos
Apple iphone Os
Apple tvos
Apple
CWE CWE-843
References (MISC) https://support.apple.com/en-us/HT213345 - (MISC) https://support.apple.com/en-us/HT213345 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213346 - (MISC) https://support.apple.com/en-us/HT213346 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213340 - (MISC) https://support.apple.com/en-us/HT213340 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213342 - (MISC) https://support.apple.com/en-us/HT213342 - Release Notes, Vendor Advisory

23 Sep 2022, 20:54

Type Values Removed Values Added
New CVE

Information

Published : 2022-09-23 20:15

Updated : 2023-12-10 14:35


NVD link : CVE-2022-32814

Mitre link : CVE-2022-32814

CVE.ORG link : CVE-2022-32814


JSON object : View

Products Affected

apple

  • macos
  • iphone_os
  • tvos
  • ipados
  • watchos
CWE
CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')