7
CVSSv3

CVE-2022-46689

Published: 15/12/2022 Updated: 09/01/2023
CVSS v3 Base Score: 7 | Impact Score: 5.9 | Exploitability Score: 1
VMScore: 0

Vulnerability Summary

A race condition was addressed with additional validation. This issue is fixed in tvOS 16.2, macOS Monterey 12.6.2, macOS Ventura 13.1, macOS Big Sur 11.7.2, iOS 15.7.2 and iPadOS 15.7.2, iOS 16.2 and iPadOS 16.2, watchOS 9.2. An app may be able to execute arbitrary code with kernel privileges.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple watchos

apple tvos

apple ipados

apple iphone os

apple safari

apple macos

Exploits

Dirty Cow arbitrary file write local privilege escalation exploit for macOS ...

Github Repositories

Chú cừu SerdyKee

serdykeegithubio A Jailed toolbox application for iOS 140-1571 and 160-1612 using CVE-2022-46689 Enable Notifications and set Location Services to Always to keep the app running in the background, keep the dock and folder background hidden, and prevent some sound effects from reverting Warning: Some changes are permanent on iOS 140-1481 IPA available in the Release

n443source Add neon443githubio/n443source to your sources list One click: AltStore SideStore Apps included Cowabunga A Jailed toolbox application for iOS 140-1571 and 160-1612 using CVE-2022-46689 githubcom/leminlimez/Cowabunga Cluckabunga KFD Customization Tool for iOS 162-165 & 166b1 githubcom/leminlimez/Cluckabunga PureKFD PureKF

Get root on macOS 13.0.1 with CVE-2022-46689 (macOS equivalent of the Dirty Cow bug), using the testcase extracted from Apple's XNU source.

Get root on macOS 1301 with CVE-2022-46689 (macOS equivalent of the Dirty Cow bug), using the testcase extracted from Apple's XNU source worthdoingbadlycom/macdirtycow/ Usage On a macOS 1301 / 1261 (or below) machine, run: clang -o switcharoo vm_unaligned_copy_switch_racec sed -e "s/rootok/permit/g" /etc/pamd/su > overwrite_filebin /swi

n443source Add neon443githubio/n443source to your sources list One click: AltStore SideStore Apps included Cowabunga A Jailed toolbox application for iOS 140-1571 and 160-1612 using CVE-2022-46689 githubcom/leminlimez/Cowabunga Cluckabunga KFD Customization Tool for iOS 162-165 & 166b1 githubcom/leminlimez/Cluckabunga PureKFD PureKF

n443source Add neon443githubio/n443source to your sources list One click: AltStore SideStore Apps included Cowabunga A Jailed toolbox application for iOS 140-1571 and 160-1612 using CVE-2022-46689 githubcom/leminlimez/Cowabunga Cluckabunga KFD Customization Tool for iOS 162-165 & 166b1 githubcom/leminlimez/Cluckabunga PureKFD PureKF

Curated list of my GitHub stars

Awesome Stars A curated list of my GitHub stars! Generated by starred Contents ASL Adblock Filter List AppleScript Assembly AutoIt Awk Batchfile C C# C++ CMake CSS CUE Clojure CoffeeScript Common Lisp Crystal D Dart Dockerfile EJS Elixir Elm Emacs Lisp GLSL Go HTML Haskell Inno Setup Java JavaScript Jinja Jsonnet Julia Jupyter Notebook Kotlin Logos Lua M4 Makefile Markdown

Proof-of-concept app to overwrite fonts on iOS using CVE-2022-46689.

Proof-of-concept app to overwrite fonts on iOS using CVE-2022-46689 Works on iOS 1612 and below (tested on iOS 161) on unjailbroken devices IPA available in the Releases section Fonts included: DejaVu Sans Condensed DejaVu Serif DejaVu Sans Mono Go Regular Go Mono Fira Sans Segoe UI Comic Sans MS Choco Cooky You can also import custom fonts that were ported for iOS Scr

Awesome Stars A curated list of my GitHub stars! Generated by starred Contents Batchfile C C# C++ CSS Cairo Dart Dockerfile Elixir Go HTML Java JavaScript Jinja Kotlin Less Lua Makefile Markdown Nix Objective-C Objective-C++ Others PHP Perl PowerShell Python Roff Ruby Rust Shell Svelte Swift TeX TypeScript Vim Script Vue Batchfile massgravel/Microsoft-Activation-Scripts

Cowabunga A Jailed toolbox application for iOS 140-1571 and 160-1612 using CVE-2022-46689 Enable Notifications and set Location Services to Always to keep the app running in the background, keep the dock and folder background hidden, and prevent some sound effects from reverting Warning: Some changes are permanent on iOS 140-1481 IPA available in the Releases section

n443source Add neon443githubio/n443source to your sources list One click: AltStore SideStore Apps included Cowabunga A Jailed toolbox application for iOS 140-1571 and 160-1612 using CVE-2022-46689 githubcom/leminlimez/Cowabunga Cluckabunga KFD Customization Tool for iOS 162-165 & 166b1 githubcom/leminlimez/Cluckabunga PureKFD PureKF

iOS 14.0-15.7.1 & 16.0-16.1.2 MacDirtyCow ToolBox

Cowabunga A Jailed toolbox application for iOS 140-1571 and 160-1612 using CVE-2022-46689 Cowabunga MDC has reached its end of life There will be no more updates and has been archived Enable Notifications and set Location Services to Always to keep the app running in the background, keep the dock and folder background hidden, and prevent some sound effects from reverti

Example of CVE-2022-46689 aka MacDirtyCow.

MacDirtyCow Example of CVE-2022-46689 aka MacDirtyCow What? MacDirtyCow is a privilege escalation vulnerability in macOS, similar to the Dirty COW vulnerability in Linux The vulnerability resides in the copy-on-write (COW) mechanism used by macOS's XNU kernel The vulnerability allows an attacker to modify read-only root-owned files, which could lead to an attacker gaini

Main Repo For PureKFD

PureKFD - The Purest iOS Customization Toolbox Download • Discord • Twitter Overview PureKFD is a KFD Focused Package Manager for iOS, focusing on iOS versions 140 through 166b1 (excluding 1651) using KFD (CVE-2023-32434) and MDC (CVE-2022-46689) PureKFD allows users to customize their iOS experience through a user-friendly interface, utilizing commun

Get root on macOS 1301 with CVE-2022-46689 (macOS equivalent of the Dirty Cow bug), using the testcase extracted from Apple's XNU source worthdoingbadlycom/macdirtycow/ Usage On a macOS 1301 / 1261 (or below) machine, run: clang -o switcharoo vm_unaligned_copy_switch_racec sed -e "s/rootok/permit/g" /etc/pamd/su > overwrite_filebin /swi

A KFD Focused Package Manager that supports 14.0-16.6.1!

PureKFD - The Purest iOS Toolbox Download • Discord • Twitter Overview PureKFD is a KFD Focused Package Manager, supporting iOS versions 140 through 1661 using KFD CVE-2023-41974 and MDC CVE-2022-46689 PureKFD allows users to customize their experience through a user-friendly interface, utilizing community-developed tweaks available from the community&

A standalone app to install TrollStore on MDC devices

TipsGotTrolled Well,well,well iOS 154 (to 1571) -> 1612 Not higher 162 and more go take a look at kfd (kfd support will be added later) The app installs TrollStore (2) on your device This uses MacDirtyCow (our beloved), also known as CVE-2022-46689 This vulnerability is also used by Cowabunga and Misaka The app replaces your Tipsapp with TrollStore Persist

Proof-of-concept app to overwrite fonts on iOS using CVE-2022-46689 Works on iOS 1612 and below (tested on iOS 161) on unjailbroken devices Fonts included: DejaVu Sans Condensed DejaVu Serif DejaVu Sans Mono Choco Cooky Choice of fonts I don't know how to port fonts for iOS properly: I did look for guides, but they were too difficult The included fonts were the on

A “Jailbreak” that takes advantage of keybagd. This was made for my high school finals.

isejb A “Jailbreak” that takes advantage of keybagd This was made for my high school finals Simple explanation: This jailbreak utalizes the "MacDirtyCow" Exploit (CVE-2022-46689) This jailbreak works for up to five minutes before it needs to be refreshed This jailbreak installs sileo but no tweaks can be used Since this runs in a entirely different env

iOS 14.0-15.7.1 & 16.0-16.1.2 MacDirtyCow ToolBox

Cowabunga A Jailed toolbox application for iOS 140-1571 and 160-1612 using CVE-2022-46689 Cowabunga MDC has reached its end of life There will be no more updates and has been archived Enable Notifications and set Location Services to Always to keep the app running in the background, keep the dock and folder background hidden, and prevent some sound effects from reverti

File Manager for CVE-2022-46689

FileManager Hacked together File Manager for CVE-2022-46689

iOS customization app powered by CVE-2022-46689. No jailbreak required.

Mandela Rewritten iOS customization app powered by CVE-2022-46689 No jailbreak required Disclaimer I am not responsible for any damage to your device Use this app at your own risk Building instructions git clone githubcom/BomberFish/Mandela-Rewrittengit cd Mandela make

n443source Add neon443githubio/n443source to your sources list One click: AltStore SideStore Apps included Cowabunga A Jailed toolbox application for iOS 140-1571 and 160-1612 using CVE-2022-46689 githubcom/leminlimez/Cowabunga Cluckabunga KFD Customization Tool for iOS 162-165 & 166b1 githubcom/leminlimez/Cluckabunga PureKFD PureKF

Modern macOS jailbreak.

ra1nm8 Work in Progress jailbreak tool for macOS Currently has the ability to "jailbreak" (exploit) macOS 10136 - 1261 // 130-1301 kernel using CVE-2022-46689 (MacDirtyCow) Goals for the final version: Modern macOS jailbreaking for as many versions as possible - arm64 (M1/M2) support prioritized Modern Windows jailbreaking for as many versions as possible - m

CVE-2022-46689

FileSwitcherX iOS 140-1571 & 160-1612 Install TrollStore AltStore Credits githubcom/zhuowei/MacDirtyCow (MacDirtyCow exploit) githubcom/haxi0/TrollLock-Reborn twittercom/i41nbeer (CVE-2022-46689) twittercom/straight_tamago (FileSwitcherX)

Cowabunga A Jailed toolbox application for iOS 140-1571 and 160-1612 using CVE-2022-46689 Enable Notifications and set Location Services to Always to keep the app running in the background, keep the dock and folder background hidden, and prevent some sound effects from reverting Warning: Some changes are permanent on iOS 140-1481 IPA available in the Releases section

Get root on macOS 1301 with CVE-2022-46689 (macOS equivalent of the Dirty Cow bug), using the testcase extracted from Apple's XNU source worthdoingbadlycom/macdirtycow/ Usage On a macOS 1301 / 1261 (or below) machine, run: clang -o switcharoo vm_unaligned_copy_switch_racec sed -e "s/rootok/permit/g" /etc/pamd/su > overwrite_filebin /swi

n443source Add neon443githubio/n443source to your sources list One click: AltStore SideStore Apps included Cowabunga A Jailed toolbox application for iOS 140-1571 and 160-1612 using CVE-2022-46689 githubcom/leminlimez/Cowabunga Cluckabunga KFD Customization Tool for iOS 162-165 & 166b1 githubcom/leminlimez/Cluckabunga PureKFD PureKF

A collection of IPA files from many different sources, for TrollStore!

TrollStore-IPAs A collection from many different sources, for TrollStore! Huge thanks to hieuddo for their effort to get this up and running There are still a few issues I've noticed with how the repo is updated While this is a good companion to have, following up with this repo itself is curr

Proof-of-concept app to overwrite fonts on iOS using CVE-2022-46689.

Proof-of-concept app to overwrite fonts on iOS using CVE-2022-46689 Works on iOS 1612 and below (tested on iOS 161) on unjailbroken devices IPA available in the Releases section Fonts included: DejaVu Sans Condensed DejaVu Serif DejaVu Sans Mono Go Regular Go Mono Fira Sans Segoe UI Comic Sans MS Choco Cooky You can also import custom fonts that were ported for iOS Scr

CarMacDirtyCow Should work on iOS 140-1612 with CVE-2022-46689 Exploit Warning: Changes are permanent on iOS 140-1481 and not tested! Not very beautiful, but should work ;) On my iPhone 14 a respring or after a while it resets the wallpaper, so do it before you connect carplay and check the image in the app Steps: Install with Trollstore, sign it yourself or sign it vi

Proof-of-concept app to overwrite fonts on iOS using CVE-2022-46689.

Proof-of-concept app to overwrite fonts on iOS using CVE-2022-46689 Works on iOS 1612 and below (tested on iOS 161) on unjailbroken devices IPA available in the Releases section Fonts included: DejaVu Sans Condensed DejaVu Serif DejaVu Sans Mono Go Regular Go Mono Fira Sans Segoe UI Comic Sans MS Choco Cooky You can also import custom fonts that were ported for iOS Scr

Fucking Simple Untether for iOS 15-17

___________ __ __ __ __ __ / ____/ ___// / / /___ / /____ / /_/ /_ ___ _____ / /_ \__ \/ / / / __ \/ __/ _ \/ __/ __ \/ _ \/ ___/ / __/ ___/ / /_/ / / / / /_/ __/ /_/ / / / __/ / /_/ /____/\____/_/ /_/\__/\___/\__/_/ /_/\___/_/ by Ingan121 Fucking Simple Untethere

iOS customization app powered by CVE-2022-46689

Warning! This is being phased out in favour of Mandela Rewritten! Please go there for future updates! Mandela iOS customization app powered by CVE-2022-46689 No jailbreak required Disclaimer I am not responsible for any damage to your device Use this app at your own risk Building instructions git clone githubcom/BomberFish/Mandelagit cd Mandela make

locchange What is it? This uses CVE 2022 46689 to change your iPhone's region code Reason for Changing that Like Korea & Japan, there are some restrictions to iPhones This bypasses some restrictions installation I suggest you to use TestflightBanned by Apple :< or You can use Releases Sideload ipa Feature Backup & Restore Original Code Cust

macdirtycow Flutter plugin for exploiting the MacDirtyCow vulnerability (CVE-2022-46689) to gain full FileSystem access on iOS versions <= 1612 As per the MDC exploit, you must add the "NSAppleMusicUsageDescription" key to your Infoplist, the value of this key being shown upon exploit sandbox usage request

Awesome Stars A curated list of my GitHub stars! Generated by starred Contents Batchfile C C# C++ CSS Cairo Dart Dockerfile Elixir Go HTML Java JavaScript Jinja Kotlin Less Lua Makefile Markdown Nix Objective-C Objective-C++ Others PHP Perl PowerShell Python Roff Ruby Rust Shell Svelte Swift TeX TypeScript Vim Script Vue Batchfile massgravel/Microsoft-Activation-Scripts