CVE-2022-42837: Input Validation
Accessibility. A logic issue was addressed with improved restrictions.
Other sources
Accounts. This issue was addressed with improved data protection.
— Apple
AMD. A memory corruption issue was addressed with improved input validation.
— Apple
AMD. An out-of-bounds write issue was addressed with improved input validation.
— Apple
An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, iOS 15.7.2 and iPadOS 15.7.2, watchOS 9.2. A remote user may be able to cause unexpected app termination or arbitrary code execution.
AppleAVD. An out-of-bounds write issue was addressed with improved input validation.
— Apple
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2022-42843
- CVE-2022-46694
- CVE-2022-42865
- CVE-2022-42848
- CVE-2022-46693
- CVE-2022-42851
- CVE-2022-42864
- CVE-2022-46690
- CVE-2022-42837
- CVE-2022-46689
- CVE-2022-46701
- CVE-2022-42842
- CVE-2022-42845
- CVE-2022-48618
- CVE-2022-40303
- CVE-2022-40304
- CVE-2022-42855
- CVE-2022-46695
- CVE-2022-42849
- CVE-2022-42866
- CVE-2022-46705
- CVE-2022-42867
- CVE-2022-46691
- CVE-2022-46692
- CVE-2022-42852
- CVE-2022-46696
- CVE-2022-46700
- CVE-2022-46698
- CVE-2022-46699
- CVE-2022-42863
- CVE-2022-42856
- CVE-2022-46717
- CVE-2022-42859
- CVE-2022-46703
- CVE-2022-42858
- CVE-2022-42847
- CVE-2022-42854
- CVE-2022-42853
- CVE-2022-35252
- CVE-2022-32942
- CVE-2022-46720
- CVE-2022-46710
- CVE-2022-46697
- CVE-2022-42861
- CVE-2022-42839
- CVE-2022-46716
- CVE-2022-46704
- CVE-2022-32943
- CVE-2022-42840
- CVE-2022-42862
- CVE-2022-24836
- CVE-2022-29181
- CVE-2022-46718
- CVE-2022-32919
- CVE-2022-46725
- CVE-2022-42841
- CVE-2022-43454
- CVE-2022-48610
- CVE-2022-46702
- CVE-2022-42850
- CVE-2022-42846
- CVE-2022-42844
- CVE-2023-23496
Frequently Asked Questions
What is the vulnerability ID for this iTunes Store issue?
The vulnerability ID for this iTunes Store issue is CVE-2022-42837.
What software is affected by this vulnerability?
The affected software includes Apple iOS (up to version 16.2), Apple iPadOS (up to version 16.2), Apple macOS Ventura (up to version 13.1), Apple iOS (up to version 15.7.2), Apple iPadOS (up to version 15.7.2), Apple tvOS (up to version 16.2), and Apple watchOS (up to version 9.2).
What is the severity of CVE-2022-42837?
The severity of CVE-2022-42837 has not been specified.
How can I fix the iTunes Store vulnerability CVE-2022-42837?
To fix the iTunes Store vulnerability CVE-2022-42837, update your affected software to the latest version available.
Where can I find more information about CVE-2022-42837?
You can find more information about CVE-2022-42837 on the Apple support website.