Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qh2r-8xvg-hm24

Опубликовано: 15 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 16.2, tvOS 16.2, macOS Ventura 13.1, iOS 15.7.2 and iPadOS 15.7.2, iOS 16.1.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.1..

A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 16.2, tvOS 16.2, macOS Ventura 13.1, iOS 15.7.2 and iPadOS 15.7.2, iOS 16.1.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.1..

EPSS

Процентиль: 40%
0.00187
Низкий

8.8 High

CVSS3

Дефекты

CWE-843

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 3 лет назад

A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 16.2, tvOS 16.2, macOS Ventura 13.1, iOS 15.7.2 and iPadOS 15.7.2, iOS 16.1.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.1..

CVSS3: 8.8
redhat
около 3 лет назад

A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 16.2, tvOS 16.2, macOS Ventura 13.1, iOS 15.7.2 and iPadOS 15.7.2, iOS 16.1.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.1..

CVSS3: 8.8
nvd
около 3 лет назад

A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 16.2, tvOS 16.2, macOS Ventura 13.1, iOS 15.7.2 and iPadOS 15.7.2, iOS 16.1.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.1..

CVSS3: 8.8
debian
около 3 лет назад

A type confusion issue was addressed with improved state handling. Thi ...

suse-cvrf
около 3 лет назад

Security update for webkit2gtk3

EPSS

Процентиль: 40%
0.00187
Низкий

8.8 High

CVSS3

Дефекты

CWE-843