Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-42837


An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, iOS 15.7.2 and iPadOS 15.7.2, watchOS 9.2. A remote user may be able to cause unexpected app termination or arbitrary code execution.


Published

2022-12-15T19:15:23.220

Last Modified

2025-04-21T17:15:22.027

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo
  • Type: Secondary
    CWE-20

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System apple ipados < 15.7.2 Yes
Operating System apple ipados < 16.2 Yes
Operating System apple iphone_os < 15.7.2 Yes
Operating System apple iphone_os < 16.2 Yes
Operating System apple macos 13.0 Yes
Operating System apple watchos < 9.2 Yes

References