ZeroHour

CVE-2022-26765

CVSS 3.1
4.7 medium
EPSS
<1%p10
Published
()
Modified
Description

A race condition was addressed with improved state handling. This issue is fixed in watchOS 8.6, tvOS 15.5, macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5. A malicious attacker with arbitrary read and write capability may be able to bypass Pointer Authentication.

Vendors
apple
Products
ipados, iphone os, macos, tvos, watchos
Weakness
CWE-362
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.