ZeroHour

CVE-2022-32844

CVSS 3.1
6.3 medium
EPSS
<1%p10
Published
()
Modified
Description

A race condition was addressed with improved state handling. This issue is fixed in tvOS 15.6, watchOS 8.7, iOS 15.6 and iPadOS 15.6. An app with arbitrary kernel read and write capability may be able to bypass Pointer Authentication.

Vendors
apple
Products
ipados, iphone os, tvos, watchos
Weakness
CWE-362
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N

In the news