CVE-2022-42823

A type confusion issue was addressed with improved memory handling. This issue is fixed in tvOS 16.1, macOS Ventura 13, watchOS 9.1, Safari 16.1, iOS 16.1 and iPadOS 16. Processing maliciously crafted web content may lead to arbitrary code execution.
References
Link Resource
http://www.openwall.com/lists/oss-security/2022/11/04/4 Mailing List Third Party Advisory
https://lists.debian.org/debian-lts-announce/2022/11/msg00010.html Mailing List Third Party Advisory
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5LF4LYP725XZ7RWOPFUV6DGPN4Q5DUU4/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AQKLEGJK3LHAKUQOLBHNR2DI3IUGLLTY/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JOFKX6BUEJFECSVFV6P5INQCOYQBB4NZ/
https://security.gentoo.org/glsa/202305-32
https://support.apple.com/en-us/HT213488 Vendor Advisory
https://support.apple.com/en-us/HT213489 Vendor Advisory
https://support.apple.com/en-us/HT213491 Vendor Advisory
https://support.apple.com/en-us/HT213492 Vendor Advisory
https://support.apple.com/en-us/HT213495 Vendor Advisory
https://www.debian.org/security/2022/dsa-5273 Third Party Advisory
https://www.debian.org/security/2022/dsa-5274 Third Party Advisory
http://www.openwall.com/lists/oss-security/2022/11/04/4 Mailing List Third Party Advisory
https://lists.debian.org/debian-lts-announce/2022/11/msg00010.html Mailing List Third Party Advisory
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5LF4LYP725XZ7RWOPFUV6DGPN4Q5DUU4/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AQKLEGJK3LHAKUQOLBHNR2DI3IUGLLTY/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JOFKX6BUEJFECSVFV6P5INQCOYQBB4NZ/
https://security.gentoo.org/glsa/202305-32
https://support.apple.com/en-us/HT213488 Vendor Advisory
https://support.apple.com/en-us/HT213489 Vendor Advisory
https://support.apple.com/en-us/HT213491 Vendor Advisory
https://support.apple.com/en-us/HT213492 Vendor Advisory
https://support.apple.com/en-us/HT213495 Vendor Advisory
https://www.debian.org/security/2022/dsa-5273 Third Party Advisory
https://www.debian.org/security/2022/dsa-5274 Third Party Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2022-11-01 20:15

Updated : 2025-04-21 16:15


NVD link : CVE-2022-42823

Mitre link : CVE-2022-42823

CVE.ORG link : CVE-2022-42823


JSON object : View

Products Affected

debian

  • debian_linux

fedoraproject

  • fedora

apple

  • watchos
  • macos
  • tvos
  • safari
  • ipados
  • iphone_os
CWE
CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')