8.8
CVSSv3

CVE-2022-42823

Published: 01/11/2022 Updated: 07/11/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A type confusion issue was addressed with improved memory handling. This issue is fixed in tvOS 16.1, macOS Ventura 13, watchOS 9.1, Safari 16.1, iOS 16.1 and iPadOS 16. Processing maliciously crafted web content may lead to arbitrary code execution.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple macos

apple watchos

apple tvos

apple ipados

apple iphone os

apple safari

fedoraproject fedora 35

fedoraproject fedora 36

fedoraproject fedora 37

debian debian linux 10.0

debian debian linux 11.0

Vendor Advisories

Synopsis Important: webkit2gtk3 security and bug fix update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for webkit2gtk3 is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this ...
The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2022-42799 Jihwan Kim and Dohyun Lee discovered that visiting a malicious website may lead to user interface spoofing CVE-2022-42823 Dohyun Lee discovered that processing maliciously crafted web content may lead to arbitrary code execution CVE-202 ...
The following vulnerabilities have been discovered in the WPE WebKit web engine: CVE-2022-42799 Jihwan Kim and Dohyun Lee discovered that visiting a malicious website may lead to user interface spoofing CVE-2022-42823 Dohyun Lee discovered that processing maliciously crafted web content may lead to arbitrary code execution CVE-20 ...
A type confusion issue was addressed with improved memory handling This issue is fixed in tvOS 161, macOS Ventura 13, watchOS 91, Safari 161, iOS 161 and iPadOS 16 Processing maliciously crafted web content may lead to arbitrary code execution (CVE-2022-42823) ...
DescriptionThe MITRE CVE dictionary describes this issue as: A type confusion issue was addressed with improved memory handling This issue is fixed in tvOS 161, macOS Ventura 13, watchOS 91, Safari 161, iOS 161 and iPadOS 16 Processing maliciously crafted web content may lead to arbitrary code execution ...