mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-29 05:56:59 +00:00
105 lines
3.7 KiB
JSON
105 lines
3.7 KiB
JSON
{
|
|
"data_type": "CVE",
|
|
"data_format": "MITRE",
|
|
"data_version": "4.0",
|
|
"CVE_data_meta": {
|
|
"ID": "CVE-2022-42859",
|
|
"ASSIGNER": "product-security@apple.com",
|
|
"STATE": "PUBLIC"
|
|
},
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"vendor_name": "Apple",
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"product_name": "macOS",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_affected": "<",
|
|
"version_value": "13.1"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"product_name": "macOS",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_affected": "<",
|
|
"version_value": "16.2"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"product_name": "watchOS",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_affected": "<",
|
|
"version_value": "9.2"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "An app may be able to bypass Privacy preferences"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"refsource": "MISC",
|
|
"url": "https://support.apple.com/en-us/HT213532",
|
|
"name": "https://support.apple.com/en-us/HT213532"
|
|
},
|
|
{
|
|
"refsource": "MISC",
|
|
"url": "https://support.apple.com/en-us/HT213530",
|
|
"name": "https://support.apple.com/en-us/HT213530"
|
|
},
|
|
{
|
|
"refsource": "MISC",
|
|
"url": "https://support.apple.com/en-us/HT213536",
|
|
"name": "https://support.apple.com/en-us/HT213536"
|
|
},
|
|
{
|
|
"refsource": "FULLDISC",
|
|
"name": "20221220 APPLE-SA-2022-12-13-1 iOS 16.2 and iPadOS 16.2",
|
|
"url": "http://seclists.org/fulldisclosure/2022/Dec/20"
|
|
},
|
|
{
|
|
"refsource": "FULLDISC",
|
|
"name": "20221220 APPLE-SA-2022-12-13-4 macOS Ventura 13.1",
|
|
"url": "http://seclists.org/fulldisclosure/2022/Dec/23"
|
|
}
|
|
]
|
|
},
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "Multiple issues were addressed by removing the vulnerable code. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, watchOS 9.2. An app may be able to bypass Privacy preferences."
|
|
}
|
|
]
|
|
}
|
|
} |