ID

VAR-202201-0424


CVE

CVE-2022-22589


TITLE

plural  Apple  Product input verification vulnerabilities

Trust: 0.8

sources: JVNDB: JVNDB-2022-008595

DESCRIPTION

A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. Processing a maliciously crafted mail message may lead to running arbitrary javascript. plural Apple The product contains an input validation vulnerability.Information may be obtained and information may be tampered with. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 APPLE-SA-2022-05-16-3 macOS Big Sur 11.6.6 macOS Big Sur 11.6.6 addresses the following issues. Information about the security content is also available at https://support.apple.com/HT213256. apache Available for: macOS Big Sur Impact: Multiple issues in apache Description: Multiple issues were addressed by updating apache to version 2.4.53. CVE-2021-44224 CVE-2021-44790 CVE-2022-22719 CVE-2022-22720 CVE-2022-22721 AppKit Available for: macOS Big Sur Impact: A malicious application may be able to gain root privileges Description: A logic issue was addressed with improved validation. CVE-2022-22665: Lockheed Martin Red Team AppleAVD Available for: macOS Big Sur Impact: An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited. CVE-2022-22675: an anonymous researcher AppleGraphicsControl Available for: macOS Big Sur Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: A memory corruption issue was addressed with improved input validation. CVE-2022-26751: Michael DePlante (@izobashi) of Trend Micro Zero Day Initiative AppleScript Available for: macOS Big Sur Impact: Processing a maliciously crafted AppleScript binary may result in unexpected application termination or disclosure of process memory Description: An out-of-bounds read issue was addressed with improved bounds checking. CVE-2022-26698: Qi Sun of Trend Micro AppleScript Available for: macOS Big Sur Impact: Processing a maliciously crafted AppleScript binary may result in unexpected application termination or disclosure of process memory Description: An out-of-bounds read issue was addressed with improved input validation. CVE-2022-26697: Qi Sun and Robert Ai of Trend Micro CoreTypes Available for: macOS Big Sur Impact: A malicious application may bypass Gatekeeper checks Description: This issue was addressed with improved checks to prevent unauthorized actions. CVE-2022-22663: Arsenii Kostromin (0x3c3e) CVMS Available for: macOS Big Sur Impact: A malicious application may be able to gain root privileges Description: A memory initialization issue was addressed. CVE-2022-26721: Yonghwi Jin (@jinmo123) of Theori CVE-2022-26722: Yonghwi Jin (@jinmo123) of Theori DriverKit Available for: macOS Big Sur Impact: A malicious application may be able to execute arbitrary code with system privileges Description: An out-of-bounds access issue was addressed with improved bounds checking. CVE-2022-26763: Linus Henze of Pinauten GmbH (pinauten.de) Graphics Drivers Available for: macOS Big Sur Impact: A local user may be able to read kernel memory Description: An out-of-bounds read issue existed that led to the disclosure of kernel memory. CVE-2022-22674: an anonymous researcher Intel Graphics Driver Available for: macOS Big Sur Impact: A malicious application may be able to execute arbitrary code with kernel privileges Description: An out-of-bounds write issue was addressed with improved bounds checking. CVE-2022-26720: Liu Long of Ant Security Light-Year Lab Intel Graphics Driver Available for: macOS Big Sur Impact: A malicious application may be able to execute arbitrary code with kernel privileges Description: An out-of-bounds read issue was addressed with improved input validation. CVE-2022-26770: Liu Long of Ant Security Light-Year Lab Intel Graphics Driver Available for: macOS Big Sur Impact: An application may be able to execute arbitrary code with kernel privileges Description: An out-of-bounds write issue was addressed with improved input validation. CVE-2022-26756: Jack Dates of RET2 Systems, Inc Intel Graphics Driver Available for: macOS Big Sur Impact: A malicious application may be able to execute arbitrary code with kernel privileges Description: A memory corruption issue was addressed with improved input validation. CVE-2022-26769: Antonio Zekic (@antoniozekic) Intel Graphics Driver Available for: macOS Big Sur Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: An out-of-bounds write issue was addressed with improved input validation. CVE-2022-26748: Jeonghoon Shin of Theori working with Trend Micro Zero Day Initiative IOMobileFrameBuffer Available for: macOS Big Sur Impact: An application may be able to execute arbitrary code with kernel privileges Description: A memory corruption issue was addressed with improved state management. CVE-2022-26768: an anonymous researcher Kernel Available for: macOS Big Sur Impact: An application may be able to execute arbitrary code with kernel privileges Description: A memory corruption issue was addressed with improved validation. CVE-2022-26714: Peter Nguyễn Vũ Hoàng (@peternguyen14) of STAR Labs (@starlabs_sg) Kernel Available for: macOS Big Sur Impact: An application may be able to execute arbitrary code with kernel privileges Description: A use after free issue was addressed with improved memory management. CVE-2022-26757: Ned Williamson of Google Project Zero LaunchServices Available for: macOS Big Sur Impact: A malicious application may be able to bypass Privacy preferences Description: The issue was addressed with additional permissions checks. CVE-2022-26767: Wojciech Reguła (@_r3ggi) of SecuRing LaunchServices Available for: macOS Big Sur Impact: A sandboxed process may be able to circumvent sandbox restrictions Description: An access issue was addressed with additional sandbox restrictions on third-party applications. CVE-2022-26706: Arsenii Kostromin (0x3c3e) libresolv Available for: macOS Big Sur Impact: An attacker may be able to cause unexpected application termination or arbitrary code execution Description: This issue was addressed with improved checks. CVE-2022-26776: Zubair Ashraf of Crowdstrike, Max Shavrick (@_mxms) of the Google Security Team LibreSSL Available for: macOS Big Sur Impact: Processing a maliciously crafted certificate may lead to a denial of service Description: A denial of service issue was addressed with improved input validation. CVE-2022-0778 libxml2 Available for: macOS Big Sur Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution Description: A use after free issue was addressed with improved memory management. CVE-2022-23308 OpenSSL Available for: macOS Big Sur Impact: Processing a maliciously crafted certificate may lead to a denial of service Description: This issue was addressed with improved checks. CVE-2022-0778 PackageKit Available for: macOS Big Sur Impact: A malicious application may be able to modify protected parts of the file system Description: This issue was addressed by removing the vulnerable code. CVE-2022-26712: Mickey Jin (@patch1t) Printing Available for: macOS Big Sur Impact: A malicious application may be able to bypass Privacy preferences Description: This issue was addressed by removing the vulnerable code. CVE-2022-26746: @gorelics Security Available for: macOS Big Sur Impact: A malicious app may be able to bypass signature validation Description: A certificate parsing issue was addressed with improved checks. CVE-2022-26766: Linus Henze of Pinauten GmbH (pinauten.de) SMB Available for: macOS Big Sur Impact: An application may be able to gain elevated privileges Description: An out-of-bounds read issue was addressed with improved input validation. CVE-2022-26718: Peter Nguyễn Vũ Hoàng of STAR Labs SMB Available for: macOS Big Sur Impact: Mounting a maliciously crafted Samba network share may lead to arbitrary code execution Description: A memory corruption issue was addressed with improved input validation. CVE-2022-26723: Felix Poulin-Belanger SMB Available for: macOS Big Sur Impact: An application may be able to gain elevated privileges Description: An out-of-bounds write issue was addressed with improved bounds checking. CVE-2022-26715: Peter Nguyễn Vũ Hoàng of STAR Labs SoftwareUpdate Available for: macOS Big Sur Impact: A malicious application may be able to access restricted files Description: This issue was addressed with improved entitlements. CVE-2022-26728: Mickey Jin (@patch1t) TCC Available for: macOS Big Sur Impact: An app may be able to capture a user's screen Description: This issue was addressed with improved checks. CVE-2022-26726: an anonymous researcher Tcl Available for: macOS Big Sur Impact: A malicious application may be able to break out of its sandbox Description: This issue was addressed with improved environment sanitization. CVE-2022-26755: Arsenii Kostromin (0x3c3e) Vim Available for: macOS Big Sur Impact: Multiple issues in Vim Description: Multiple issues were addressed by updating Vim. CVE-2022-22589: Heige of KnownSec 404 Team (knownsec.com) and Bo Qu of Palo Alto Networks (paloaltonetworks.com) Wi-Fi Available for: macOS Big Sur Impact: A malicious application may disclose restricted memory Description: A memory corruption issue was addressed with improved validation. CVE-2022-26745: an anonymous researcher Wi-Fi Available for: macOS Big Sur Impact: An application may be able to execute arbitrary code with kernel privileges Description: A memory corruption issue was addressed with improved memory handling. CVE-2022-26761: Wang Yu of Cyberserval zip Available for: macOS Big Sur Impact: Processing a maliciously crafted file may lead to a denial of service Description: A denial of service issue was addressed with improved state handling. CVE-2022-0530 zlib Available for: macOS Big Sur Impact: An attacker may be able to cause unexpected application termination or arbitrary code execution Description: A memory corruption issue was addressed with improved input validation. CVE-2018-25032: Tavis Ormandy zsh Available for: macOS Big Sur Impact: A remote attacker may be able to cause arbitrary code execution Description: This issue was addressed by updating to zsh version 5.8.1. CVE-2021-45444 Additional recognition Bluetooth We would like to acknowledge Jann Horn of Project Zero for their assistance. macOS Big Sur 11.6.6 may be obtained from the Mac App Store or Apple's Software Downloads web site: https://support.apple.com/downloads/ All information is also posted on the Apple Security Updates web site: https://support.apple.com/en-us/HT201222. This message is signed with Apple's Product Security PGP key, and details are available at: https://www.apple.com/support/security/pgp/ -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEePiLW1MrMjw19XzoeC9qKD1prhgFAmKC1TUACgkQeC9qKD1p rhgJBg/9HpPp6P2OtFdYHigfaoga/3szMAjXC650MlC2rF1lXyTRVsO54eupz4er K8Iud3+YnDVTUKkadftWt2XdxAADGtfEFhJW584RtnWjeli+XtGEjQ8jD1/MNPJW qtnrOh2pYG9SxolKDofhiecbYxIGppRKSDRFl0/3VGFed2FIpiRDunlttHBEhHu/ vZVSFzMrNbGvhju+ZCdwFLKXOgB851aRSeo9Xkt63tSGiee7rLmVAINyFbbPwcVP yXwMvn0TNodCBn0wBWD0+iQ3UXIDIYSPaM1Z0BQxVraEhK3Owro3JKgqNbWswMvj SY0KUulbAPs3aOeyz1BI70npYA3+Qwd+bk2hxbzbU/AxvxCrsEk04QfxLYqvj0mR VZYPcup2KAAkiTeekQ5X739r8NAyaaI+bp7FllFv/Z2jVW9kGgNIFr46R05MD9NF aC1JAZtJ4VWbMEGHnHAMrOgdGaHpryvzl2BjUXRgW27vIq5uF5YiNcpjS2BezTFc R2ojiMNRB33Y44LlH7Zv3gHm4bE3+NzcGeWvBzwOsHznk9Jiv6x2eBUxkttMlPyO zymQMONQN3bktSMT8JnmJ8rlEgISONd7NeTEzuhlGIWaWNAFmmBoPnBiPk+yC3n4 d22yFs6DLp2pJ+0zOWmTcqt1xYng05Jwj4F0KT49w0TO9Up79+o= =rtPl -----END PGP SIGNATURE----- . For the stable distribution (bullseye), these problems have been fixed in version 2.34.6-1~deb11u1. We recommend that you upgrade your wpewebkit packages. Alternatively, on your watch, select "My Watch > General > About". Installation note: Apple TV will periodically check for software updates

Trust: 2.34

sources: NVD: CVE-2022-22589 // JVNDB: JVNDB-2022-008595 // VULHUB: VHN-411217 // PACKETSTORM: 167188 // PACKETSTORM: 169237 // PACKETSTORM: 167189 // PACKETSTORM: 165777 // PACKETSTORM: 165776 // PACKETSTORM: 165775 // PACKETSTORM: 165772

AFFECTED PRODUCTS

vendor:applemodel:mac os xscope:eqversion:10.15.7

Trust: 1.0

vendor:applemodel:macosscope:gteversion:12.0.0

Trust: 1.0

vendor:applemodel:mac os xscope:ltversion:10.15.7

Trust: 1.0

vendor:applemodel:safariscope:ltversion:15.3

Trust: 1.0

vendor:applemodel:ipadosscope:ltversion:15.3

Trust: 1.0

vendor:applemodel:macosscope:gteversion:11.0

Trust: 1.0

vendor:applemodel:watchosscope:ltversion:8.4

Trust: 1.0

vendor:applemodel:macosscope:ltversion:11.6.6

Trust: 1.0

vendor:applemodel:tvosscope:ltversion:15.3

Trust: 1.0

vendor:applemodel:macosscope:ltversion:12.2

Trust: 1.0

vendor:applemodel:iphone osscope:ltversion:15.3

Trust: 1.0

vendor:applemodel:mac os xscope:gteversion:10.15

Trust: 1.0

vendor:アップルmodel:iosscope: - version: -

Trust: 0.8

vendor:アップルmodel:ipadosscope: - version: -

Trust: 0.8

vendor:アップルmodel:tvosscope: - version: -

Trust: 0.8

vendor:アップルmodel:macosscope: - version: -

Trust: 0.8

vendor:アップルmodel:safariscope: - version: -

Trust: 0.8

vendor:アップルmodel:apple mac os xscope: - version: -

Trust: 0.8

vendor:アップルmodel:watchosscope: - version: -

Trust: 0.8

sources: JVNDB: JVNDB-2022-008595 // NVD: CVE-2022-22589

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2022-22589
value: MEDIUM

Trust: 1.0

NVD: CVE-2022-22589
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-202201-2419
value: MEDIUM

Trust: 0.6

VULHUB: VHN-411217
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2022-22589
severity: MEDIUM
baseScore: 4.3
vectorString: AV:N/AC:M/AU:N/C:N/I:P/A:N
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: 8.6
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-411217
severity: MEDIUM
baseScore: 4.3
vectorString: AV:N/AC:M/AU:N/C:N/I:P/A:N
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: 8.6
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

nvd@nist.gov: CVE-2022-22589
baseSeverity: MEDIUM
baseScore: 6.1
vectorString: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: REQUIRED
scope: CHANGED
confidentialityImpact: LOW
integrityImpact: LOW
availabilityImpact: NONE
exploitabilityScore: 2.8
impactScore: 2.7
version: 3.1

Trust: 1.0

NVD: CVE-2022-22589
baseSeverity: MEDIUM
baseScore: 6.1
vectorString: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: REQUIRED
scope: CHANGED
confidentialityImpact: LOW
integrityImpact: LOW
availabilityImpact: NONE
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: VULHUB: VHN-411217 // CNNVD: CNNVD-202201-2419 // JVNDB: JVNDB-2022-008595 // NVD: CVE-2022-22589

PROBLEMTYPE DATA

problemtype:NVD-CWE-Other

Trust: 1.0

problemtype:Inappropriate input confirmation (CWE-20) [NVD evaluation ]

Trust: 0.8

problemtype:CWE-20

Trust: 0.1

sources: VULHUB: VHN-411217 // JVNDB: JVNDB-2022-008595 // NVD: CVE-2022-22589

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-202201-2419

TYPE

input validation error

Trust: 0.6

sources: CNNVD: CNNVD-202201-2419

EXPLOIT AVAILABILITY

sources: VULHUB: VHN-411217

PATCH

title:HT213255 Apple  Security updateurl:https://support.apple.com/en-us/HT213053

Trust: 0.8

title:Apple macOS Fixes for code injection vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=182129

Trust: 0.6

sources: CNNVD: CNNVD-202201-2419 // JVNDB: JVNDB-2022-008595

EXTERNAL IDS

db:NVDid:CVE-2022-22589

Trust: 4.0

db:PACKETSTORMid:165777

Trust: 0.8

db:PACKETSTORMid:167189

Trust: 0.8

db:JVNDBid:JVNDB-2022-008595

Trust: 0.8

db:PACKETSTORMid:168226

Trust: 0.7

db:PACKETSTORMid:167037

Trust: 0.7

db:PACKETSTORMid:166164

Trust: 0.7

db:CS-HELPid:SB2022022120

Trust: 0.6

db:CS-HELPid:SB2022051703

Trust: 0.6

db:CS-HELPid:SB2022012637

Trust: 0.6

db:CS-HELPid:SB2022020932

Trust: 0.6

db:CS-HELPid:SB2022051140

Trust: 0.6

db:AUSCERTid:ESB-2022.0844

Trust: 0.6

db:AUSCERTid:ESB-2022.2411

Trust: 0.6

db:AUSCERTid:ESB-2022.0409

Trust: 0.6

db:AUSCERTid:ESB-2022.0724

Trust: 0.6

db:AUSCERTid:ESB-2022.0407

Trust: 0.6

db:AUSCERTid:ESB-2022.0899

Trust: 0.6

db:CNNVDid:CNNVD-202201-2419

Trust: 0.6

db:PACKETSTORMid:167188

Trust: 0.2

db:PACKETSTORMid:165775

Trust: 0.2

db:PACKETSTORMid:165772

Trust: 0.2

db:PACKETSTORMid:165776

Trust: 0.2

db:PACKETSTORMid:165771

Trust: 0.1

db:VULHUBid:VHN-411217

Trust: 0.1

db:PACKETSTORMid:169237

Trust: 0.1

sources: VULHUB: VHN-411217 // PACKETSTORM: 167188 // PACKETSTORM: 169237 // PACKETSTORM: 167189 // PACKETSTORM: 165777 // PACKETSTORM: 165776 // PACKETSTORM: 165775 // PACKETSTORM: 165772 // CNNVD: CNNVD-202201-2419 // JVNDB: JVNDB-2022-008595 // NVD: CVE-2022-22589

REFERENCES

url:https://security.gentoo.org/glsa/202208-39

Trust: 2.5

url:https://support.apple.com/en-us/ht213058

Trust: 2.3

url:https://support.apple.com/kb/ht213185

Trust: 1.7

url:https://support.apple.com/kb/ht213255

Trust: 1.7

url:https://support.apple.com/kb/ht213256

Trust: 1.7

url:http://seclists.org/fulldisclosure/2022/may/35

Trust: 1.7

url:http://seclists.org/fulldisclosure/2022/may/33

Trust: 1.7

url:https://support.apple.com/en-us/ht213053

Trust: 1.7

url:https://support.apple.com/en-us/ht213054

Trust: 1.7

url:https://support.apple.com/en-us/ht213057

Trust: 1.7

url:https://support.apple.com/en-us/ht213059

Trust: 1.7

url:https://nvd.nist.gov/vuln/detail/cve-2022-22589

Trust: 1.5

url:https://www.apple.com/support/security/pgp/

Trust: 0.6

url:https://www.cybersecurity-help.cz/vdb/sb2022051703

Trust: 0.6

url:https://www.cybersecurity-help.cz/vdb/sb2022022120

Trust: 0.6

url:https://access.redhat.com/security/cve/cve-2022-22589

Trust: 0.6

url:https://packetstormsecurity.com/files/168226/gentoo-linux-security-advisory-202208-39.html

Trust: 0.6

url:https://www.cybersecurity-help.cz/vdb/sb2022020932

Trust: 0.6

url:https://vigilance.fr/vulnerability/apple-macos-multiple-vulnerabilities-37394

Trust: 0.6

url:https://packetstormsecurity.com/files/165777/apple-security-advisory-2022-01-26-7.html

Trust: 0.6

url:https://packetstormsecurity.com/files/166164/ubuntu-security-notice-usn-5306-1.html

Trust: 0.6

url:https://packetstormsecurity.com/files/167037/red-hat-security-advisory-2022-1777-01.html

Trust: 0.6

url:https://cxsecurity.com/cveshow/cve-2022-22589/

Trust: 0.6

url:https://www.cybersecurity-help.cz/vdb/sb2022012637

Trust: 0.6

url:https://www.cybersecurity-help.cz/vdb/sb2022051140

Trust: 0.6

url:https://support.apple.com/en-us/ht213256

Trust: 0.6

url:https://packetstormsecurity.com/files/167189/apple-security-advisory-2022-05-16-4.html

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2022.0409

Trust: 0.6

url:https://vigilance.fr/vulnerability/webkitgtk-three-vulnerabilities-37548

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2022.0407

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2022.0724

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2022.0844

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2022.0899

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2022.2411

Trust: 0.6

url:https://nvd.nist.gov/vuln/detail/cve-2022-22592

Trust: 0.5

url:https://nvd.nist.gov/vuln/detail/cve-2022-22590

Trust: 0.5

url:https://support.apple.com/kb/ht201222

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2022-22594

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2022-22584

Trust: 0.3

url:https://xlab.tencent.com)

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2022-22593

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2022-22585

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2022-22578

Trust: 0.3

url:https://support.apple.com/downloads/

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2022-22721

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2022-23308

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2022-22663

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2021-44790

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2022-22674

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2022-0530

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2021-44224

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2022-26698

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2022-22719

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2022-26697

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2022-0778

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2021-45444

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2018-25032

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2022-22720

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2022-22665

Trust: 0.2

url:https://support.apple.com/en-us/ht201222.

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2022-22579

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2021-46059

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-0128

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-4187

Trust: 0.1

url:https://support.apple.com/ht213256.

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-4193

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-4173

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-4192

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-4136

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-22675

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-26706

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-26712

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-4166

Trust: 0.1

url:https://www.debian.org/security/faq

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-22620

Trust: 0.1

url:https://security-tracker.debian.org/tracker/wpewebkit

Trust: 0.1

url:https://www.debian.org/security/

Trust: 0.1

url:https://support.apple.com/ht213255.

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-26726

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-26714

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-26727

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-26728

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-26748

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-26721

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-26720

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-26715

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-26722

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-26746

Trust: 0.1

url:https://support.apple.com/ht213058.

Trust: 0.1

url:https://support.apple.com/kb/ht204641

Trust: 0.1

url:https://support.apple.com/ht213059.

Trust: 0.1

url:https://support.apple.com/ht213057.

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-22586

Trust: 0.1

url:https://support.apple.com/ht213054.

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-22591

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-22587

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2022-22583

Trust: 0.1

sources: VULHUB: VHN-411217 // PACKETSTORM: 167188 // PACKETSTORM: 169237 // PACKETSTORM: 167189 // PACKETSTORM: 165777 // PACKETSTORM: 165776 // PACKETSTORM: 165775 // PACKETSTORM: 165772 // CNNVD: CNNVD-202201-2419 // JVNDB: JVNDB-2022-008595 // NVD: CVE-2022-22589

CREDITS

Apple

Trust: 0.6

sources: PACKETSTORM: 167188 // PACKETSTORM: 167189 // PACKETSTORM: 165777 // PACKETSTORM: 165776 // PACKETSTORM: 165775 // PACKETSTORM: 165772

SOURCES

db:VULHUBid:VHN-411217
db:PACKETSTORMid:167188
db:PACKETSTORMid:169237
db:PACKETSTORMid:167189
db:PACKETSTORMid:165777
db:PACKETSTORMid:165776
db:PACKETSTORMid:165775
db:PACKETSTORMid:165772
db:CNNVDid:CNNVD-202201-2419
db:JVNDBid:JVNDB-2022-008595
db:NVDid:CVE-2022-22589

LAST UPDATE DATE

2026-01-25T23:23:26.090000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-411217date:2022-10-06T00:00:00
db:CNNVDid:CNNVD-202201-2419date:2022-09-02T00:00:00
db:JVNDBid:JVNDB-2022-008595date:2023-07-28T06:05:00
db:NVDid:CVE-2022-22589date:2024-11-21T06:47:04.823

SOURCES RELEASE DATE

db:VULHUBid:VHN-411217date:2022-03-18T00:00:00
db:PACKETSTORMid:167188date:2022-05-17T16:59:42
db:PACKETSTORMid:169237date:2022-02-28T20:12:00
db:PACKETSTORMid:167189date:2022-05-17T16:59:55
db:PACKETSTORMid:165777date:2022-01-31T15:47:24
db:PACKETSTORMid:165776date:2022-01-31T15:47:07
db:PACKETSTORMid:165775date:2022-01-31T15:46:53
db:PACKETSTORMid:165772date:2022-01-31T15:46:05
db:CNNVDid:CNNVD-202201-2419date:2022-01-26T00:00:00
db:JVNDBid:JVNDB-2022-008595date:2023-07-28T00:00:00
db:NVDid:CVE-2022-22589date:2022-03-18T18:15:12.567