mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-29 05:56:59 +00:00
131 lines
4.9 KiB
JSON
131 lines
4.9 KiB
JSON
{
|
|
"data_type": "CVE",
|
|
"data_format": "MITRE",
|
|
"data_version": "4.0",
|
|
"CVE_data_meta": {
|
|
"ID": "CVE-2022-42866",
|
|
"ASSIGNER": "product-security@apple.com",
|
|
"STATE": "PUBLIC"
|
|
},
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"vendor_name": "Apple",
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"product_name": "tvOS",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_affected": "<",
|
|
"version_value": "16.2"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"product_name": "tvOS",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_affected": "<",
|
|
"version_value": "13.1"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"product_name": "tvOS",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_affected": "<",
|
|
"version_value": "16.2"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"product_name": "watchOS",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_affected": "<",
|
|
"version_value": "9.2"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "An app may be able to read sensitive location information"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"refsource": "MISC",
|
|
"url": "https://support.apple.com/en-us/HT213535",
|
|
"name": "https://support.apple.com/en-us/HT213535"
|
|
},
|
|
{
|
|
"refsource": "MISC",
|
|
"url": "https://support.apple.com/en-us/HT213532",
|
|
"name": "https://support.apple.com/en-us/HT213532"
|
|
},
|
|
{
|
|
"refsource": "MISC",
|
|
"url": "https://support.apple.com/en-us/HT213530",
|
|
"name": "https://support.apple.com/en-us/HT213530"
|
|
},
|
|
{
|
|
"refsource": "MISC",
|
|
"url": "https://support.apple.com/en-us/HT213536",
|
|
"name": "https://support.apple.com/en-us/HT213536"
|
|
},
|
|
{
|
|
"refsource": "FULLDISC",
|
|
"name": "20221220 APPLE-SA-2022-12-13-1 iOS 16.2 and iPadOS 16.2",
|
|
"url": "http://seclists.org/fulldisclosure/2022/Dec/20"
|
|
},
|
|
{
|
|
"refsource": "FULLDISC",
|
|
"name": "20221220 APPLE-SA-2022-12-13-4 macOS Ventura 13.1",
|
|
"url": "http://seclists.org/fulldisclosure/2022/Dec/23"
|
|
},
|
|
{
|
|
"refsource": "FULLDISC",
|
|
"name": "20221220 APPLE-SA-2022-12-13-7 tvOS 16.2",
|
|
"url": "http://seclists.org/fulldisclosure/2022/Dec/26"
|
|
},
|
|
{
|
|
"refsource": "FULLDISC",
|
|
"name": "20221220 APPLE-SA-2022-12-13-8 watchOS 9.2",
|
|
"url": "http://seclists.org/fulldisclosure/2022/Dec/27"
|
|
}
|
|
]
|
|
},
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "The issue was addressed with improved handling of caches. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, tvOS 16.2, watchOS 9.2. An app may be able to read sensitive location information."
|
|
}
|
|
]
|
|
}
|
|
} |