{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"state":"PUBLISHED","cveId":"CVE-2022-32912","assignerOrgId":"286789f9-fbc2-4510-9f9a-43facdede74c","assignerShortName":"apple","dateUpdated":"2026-01-07T21:40:44.517Z","dateReserved":"2022-06-09T00:00:00.000Z","datePublished":"2022-09-20T00:00:00.000Z"},"containers":{"cna":{"providerMetadata":{"orgId":"286789f9-fbc2-4510-9f9a-43facdede74c","shortName":"apple","dateUpdated":"2022-10-30T00:00:00.000Z"},"descriptions":[{"lang":"en","value":"An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Safari 16, iOS 16, iOS 15.7 and iPadOS 15.7. Processing maliciously crafted web content may lead to arbitrary code execution."}],"affected":[{"vendor":"Apple","product":"iOS","versions":[{"version":"unspecified","lessThan":"16","status":"affected","versionType":"custom"}]},{"vendor":"Apple","product":"Safari","versions":[{"version":"unspecified","lessThan":"16","status":"affected","versionType":"custom"}]},{"vendor":"Apple","product":"iOS and iPadOS","versions":[{"version":"unspecified","lessThan":"15.7","status":"affected","versionType":"custom"}]}],"references":[{"url":"https://support.apple.com/en-us/HT213446"},{"url":"https://support.apple.com/en-us/HT213445"},{"url":"https://support.apple.com/en-us/HT213442"},{"name":"20221030 APPLE-SA-2022-10-27-5 Additional information for APPLE-SA-2022-10-24-2 macOS Ventura 13","tags":["mailing-list"],"url":"http://seclists.org/fulldisclosure/2022/Oct/41"},{"name":"20221030 APPLE-SA-2022-10-24-2 macOS Ventura 13","tags":["mailing-list"],"url":"http://seclists.org/fulldisclosure/2022/Oct/28"},{"name":"20221030 APPLE-SA-2022-10-27-3 Additional information for APPLE-SA-2022-09-12-1 iOS 16","tags":["mailing-list"],"url":"http://seclists.org/fulldisclosure/2022/Oct/39"},{"name":"20221030 APPLE-SA-2022-10-27-4 Additional information for APPLE-SA-2022-09-12-2 iOS 15.7 and iPadOS 15.7","tags":["mailing-list"],"url":"http://seclists.org/fulldisclosure/2022/Oct/40"},{"name":"20221030 APPLE-SA-2022-10-27-13 watchOS 9","tags":["mailing-list"],"url":"http://seclists.org/fulldisclosure/2022/Oct/49"},{"name":"20221030 APPLE-SA-2022-10-27-14 Additional information for APPLE-SA-2022-09-12-5 Safari 16","tags":["mailing-list"],"url":"http://seclists.org/fulldisclosure/2022/Oct/50"},{"name":"20221030 APPLE-SA-2022-10-27-11 tvOS 16","tags":["mailing-list"],"url":"http://seclists.org/fulldisclosure/2022/Oct/47"}],"problemTypes":[{"descriptions":[{"type":"text","lang":"en","description":"Processing maliciously crafted web content may lead to arbitrary code execution"}]}]},"adp":[{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-03T07:54:03.153Z"},"title":"CVE Program Container","references":[{"url":"https://support.apple.com/en-us/HT213446","tags":["x_transferred"]},{"url":"https://support.apple.com/en-us/HT213445","tags":["x_transferred"]},{"url":"https://support.apple.com/en-us/HT213442","tags":["x_transferred"]},{"name":"20221030 APPLE-SA-2022-10-27-5 Additional information for APPLE-SA-2022-10-24-2 macOS Ventura 13","tags":["mailing-list","x_transferred"],"url":"http://seclists.org/fulldisclosure/2022/Oct/41"},{"name":"20221030 APPLE-SA-2022-10-24-2 macOS Ventura 13","tags":["mailing-list","x_transferred"],"url":"http://seclists.org/fulldisclosure/2022/Oct/28"},{"name":"20221030 APPLE-SA-2022-10-27-3 Additional information for APPLE-SA-2022-09-12-1 iOS 16","tags":["mailing-list","x_transferred"],"url":"http://seclists.org/fulldisclosure/2022/Oct/39"},{"name":"20221030 APPLE-SA-2022-10-27-4 Additional information for APPLE-SA-2022-09-12-2 iOS 15.7 and iPadOS 15.7","tags":["mailing-list","x_transferred"],"url":"http://seclists.org/fulldisclosure/2022/Oct/40"},{"name":"20221030 APPLE-SA-2022-10-27-13 watchOS 9","tags":["mailing-list","x_transferred"],"url":"http://seclists.org/fulldisclosure/2022/Oct/49"},{"name":"20221030 APPLE-SA-2022-10-27-14 Additional information for APPLE-SA-2022-09-12-5 Safari 16","tags":["mailing-list","x_transferred"],"url":"http://seclists.org/fulldisclosure/2022/Oct/50"},{"name":"20221030 APPLE-SA-2022-10-27-11 tvOS 16","tags":["mailing-list","x_transferred"],"url":"http://seclists.org/fulldisclosure/2022/Oct/47"}]},{"problemTypes":[{"descriptions":[{"type":"CWE","cweId":"CWE-125","lang":"en","description":"CWE-125 Out-of-bounds Read"}]}],"metrics":[{"cvssV3_1":{"scope":"UNCHANGED","version":"3.1","baseScore":8.8,"attackVector":"NETWORK","baseSeverity":"HIGH","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","integrityImpact":"HIGH","userInteraction":"REQUIRED","attackComplexity":"LOW","availabilityImpact":"HIGH","privilegesRequired":"NONE","confidentialityImpact":"HIGH"}},{"other":{"type":"ssvc","content":{"timestamp":"2025-05-29T14:17:11.448430Z","id":"CVE-2022-32912","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"total"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2026-01-07T21:40:44.517Z"}}]}}