5.5
CVSSv3

CVE-2022-42824

Published: 01/11/2022 Updated: 13/12/2022
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8

Vulnerability Summary

A logic issue was addressed with improved state management. This issue is fixed in tvOS 16.1, macOS Ventura 13, watchOS 9.1, Safari 16.1, iOS 16.1 and iPadOS 16. Processing maliciously crafted web content may disclose sensitive user information.

Most Upvoted Vulmon Research Post

There is no Researcher post for this vulnerability
Would you like to share something about it? Sign up now to share your knowledge with the community.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple macos

apple watchos

apple tvos

apple ipados

apple iphone os

apple safari

fedoraproject fedora 35

fedoraproject fedora 36

fedoraproject fedora 37

debian debian linux 10.0

debian debian linux 11.0

Vendor Advisories

DescriptionThe MITRE CVE dictionary describes this issue as: A logic issue was addressed with improved state management This issue is fixed in tvOS 161, macOS Ventura 13, watchOS 91, Safari 161, iOS 161 and iPadOS 16 Processing maliciously crafted web content may disclose sensitive user information ...
The following vulnerabilities have been discovered in the WPE WebKit web engine: CVE-2022-42799 Jihwan Kim and Dohyun Lee discovered that visiting a malicious website may lead to user interface spoofing CVE-2022-42823 Dohyun Lee discovered that processing maliciously crafted web content may lead to arbitrary code execution CVE-20 ...
The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2022-42799 Jihwan Kim and Dohyun Lee discovered that visiting a malicious website may lead to user interface spoofing CVE-2022-42823 Dohyun Lee discovered that processing maliciously crafted web content may lead to arbitrary code execution CVE-202 ...

Github Repositories

CVE-2022-42824 A logic issue was addressed with improved state management This issue is fixed in tvOS 161, macOS Ventura 13, watchOS 91, Safari 161, iOS 161 and iPadOS 16 Processing maliciously crafted web content may disclose sensitive user information authentication complexity vector not available not available not available confidentiality integrity avail