CVE-2022-48503

The issue was addressed with improved bounds checks. This issue is fixed in tvOS 15.6, watchOS 8.7, iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5, Safari 15.6. Processing web content may lead to arbitrary code execution.
References
Link Resource
https://support.apple.com/en-us/HT213340 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213341 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213342 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213345 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213346 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213340 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213341 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213342 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213345 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213346 Release Notes Vendor Advisory
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-48503
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

21 Oct 2025, 23:15

Type Values Removed Values Added
References
  • () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-48503 -

21 Oct 2025, 20:19

Type Values Removed Values Added
References
  • {'url': 'https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-48503', 'source': '134c704f-9b21-4f2e-91b3-4a467353bcc0'}

21 Oct 2025, 19:19

Type Values Removed Values Added
References
  • () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-48503 -

20 Oct 2025, 15:15

Type Values Removed Values Added
CWE CWE-129

Information

Published : 2023-08-14 23:15

Updated : 2025-10-21 23:15


NVD link : CVE-2022-48503

Mitre link : CVE-2022-48503

CVE.ORG link : CVE-2022-48503


JSON object : View

Products Affected

apple

  • safari
  • iphone_os
  • watchos
  • macos
  • ipados
  • tvos
CWE
NVD-CWE-noinfo CWE-129

Improper Validation of Array Index