cvelist/2022/42xxx/CVE-2022-42823.json

167 lines
6.6 KiB
JSON
Raw Normal View History

2022-10-11 17:00:33 +00:00
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2022-42823",
2022-11-01 20:01:02 +00:00
"ASSIGNER": "product-security@apple.com",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "Apple",
"product": {
"product_data": [
{
"product_name": "macOS",
"version": {
"version_data": [
{
"version_affected": "<",
"version_value": "13"
}
]
}
},
{
"product_name": "tvOS",
"version": {
"version_data": [
{
"version_affected": "<",
"version_value": "16.1"
}
]
}
},
{
"product_name": "tvOS",
"version": {
"version_data": [
{
"version_affected": "<",
"version_value": "16.1"
}
]
}
},
{
"product_name": "tvOS",
"version": {
"version_data": [
{
"version_affected": "<",
"version_value": "16.1"
}
]
}
},
{
"product_name": "watchOS",
"version": {
"version_data": [
{
"version_affected": "<",
"version_value": "9.1"
}
]
}
}
]
}
}
]
}
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Processing maliciously crafted web content may lead to arbitrary code execution"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"url": "https://support.apple.com/en-us/HT213488",
"name": "https://support.apple.com/en-us/HT213488"
},
{
"refsource": "MISC",
"url": "https://support.apple.com/en-us/HT213489",
"name": "https://support.apple.com/en-us/HT213489"
},
{
"refsource": "MISC",
"url": "https://support.apple.com/en-us/HT213492",
"name": "https://support.apple.com/en-us/HT213492"
},
{
"refsource": "MISC",
"url": "https://support.apple.com/en-us/HT213495",
"name": "https://support.apple.com/en-us/HT213495"
},
{
"refsource": "MISC",
"url": "https://support.apple.com/en-us/HT213491",
"name": "https://support.apple.com/en-us/HT213491"
2022-11-04 21:00:49 +00:00
},
{
"refsource": "MLIST",
"name": "[oss-security] 20221104 WebKitGTK and WPE WebKit Security Advisory WSA-2022-0010",
"url": "http://www.openwall.com/lists/oss-security/2022/11/04/4"
2022-11-09 03:00:32 +00:00
},
{
"refsource": "FEDORA",
"name": "FEDORA-2022-08fdc4138a",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5LF4LYP725XZ7RWOPFUV6DGPN4Q5DUU4/"
2022-11-09 04:00:32 +00:00
},
{
"refsource": "DEBIAN",
"name": "DSA-5273",
"url": "https://www.debian.org/security/2022/dsa-5273"
},
{
"refsource": "DEBIAN",
"name": "DSA-5274",
"url": "https://www.debian.org/security/2022/dsa-5274"
2022-11-09 10:00:31 +00:00
},
{
"refsource": "MLIST",
"name": "[debian-lts-announce] 20221109 [SECURITY] [DLA 3183-1] webkit2gtk security update",
"url": "https://lists.debian.org/debian-lts-announce/2022/11/msg00010.html"
2022-11-09 14:00:35 +00:00
},
{
"refsource": "FEDORA",
"name": "FEDORA-2022-ce32af66d6",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/AQKLEGJK3LHAKUQOLBHNR2DI3IUGLLTY/"
2022-11-15 03:00:32 +00:00
},
{
"refsource": "FEDORA",
"name": "FEDORA-2022-e7726761c4",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JOFKX6BUEJFECSVFV6P5INQCOYQBB4NZ/"
2023-05-30 06:00:51 +00:00
},
{
"refsource": "GENTOO",
"name": "GLSA-202305-32",
"url": "https://security.gentoo.org/glsa/202305-32"
2022-11-01 20:01:02 +00:00
}
]
2022-10-11 17:00:33 +00:00
},
"description": {
"description_data": [
{
"lang": "eng",
2022-11-01 20:01:02 +00:00
"value": "A type confusion issue was addressed with improved memory handling. This issue is fixed in tvOS 16.1, macOS Ventura 13, watchOS 9.1, Safari 16.1, iOS 16.1 and iPadOS 16. Processing maliciously crafted web content may lead to arbitrary code execution."
2022-10-11 17:00:33 +00:00
}
]
}
}