CVE-2022-22598: Low severity apple ios and ipados vulnerability
An issue with app access to camera metadata was addressed with improved logic. This issue is fixed in iOS 15.4 and iPadOS 15.4. An app may be able to learn information about the current camera view before being granted camera access.
Other sources
CoreMedia. An issue with app access to camera metadata was addressed with improved logic.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2022-22633
- CVE-2022-22666
- CVE-2022-22634
- CVE-2022-22635
- CVE-2022-22636
- CVE-2022-22652
- CVE-2022-22598
- CVE-2022-22663
- CVE-2022-22642
- CVE-2022-22643
- CVE-2022-22667
- CVE-2022-22611
- CVE-2022-22612
- CVE-2022-22641
- CVE-2022-22653
- CVE-2022-22596
- CVE-2022-22640
- CVE-2022-22613
- CVE-2022-22614
- CVE-2022-22615
- CVE-2022-22632
- CVE-2022-22638
- CVE-2021-30946
- CVE-2021-36976
- CVE-2022-21658
- CVE-2022-22622
- CVE-2022-22670
- CVE-2022-22672
- CVE-2022-22659
- CVE-2022-22618
- CVE-2022-22609
- CVE-2022-22655
- CVE-2022-22600
- CVE-2022-22599
- CVE-2022-22639
- CVE-2022-22621
- CVE-2022-22671
- CVE-2022-22662
- CVE-2022-22610
- CVE-2022-22624
- CVE-2022-22628
- CVE-2022-22629
- CVE-2022-22637
- CVE-2022-22668
Frequently Asked Questions
What is CVE-2022-22598?
CVE-2022-22598 is a vulnerability that allows an app to learn information about the current camera view before being granted camera access on Apple devices running iOS or iPadOS versions up to and excluding 15.4.
How does CVE-2022-22598 affect Apple iOS and iPadOS?
CVE-2022-22598 affects Apple iOS and iPadOS versions up to and excluding 15.4.
What is the severity of CVE-2022-22598?
The severity of CVE-2022-22598 is low with a CVSS score of 3.3.
How was CVE-2022-22598 fixed?
CVE-2022-22598 was fixed in iOS 15.4 and iPadOS 15.4 through improved logic for app access to camera metadata.