A race condition was addressed with improved state handling. This issue is fixed in watchOS 8.6, tvOS 15.5, macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5. A malicious attacker with arbitrary read and write capability may be able to bypass Pointer Authentication.
2022-05-26T20:15:09.643
2025-05-30T19:15:27.413
Modified
CVSSv3.1: 4.7 (MEDIUM)
AV:L/AC:M/Au:N/C:N/I:P/A:N
3.4
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | apple | ipados | < 15.5 | Yes |
Operating System | apple | iphone_os | < 15.5 | Yes |
Operating System | apple | macos | < 12.4 | Yes |
Operating System | apple | tvos | < 15.5 | Yes |
Operating System | apple | watchos | < 8.6 | Yes |