CVE-2022-42849: Input Validation
Accessibility. A logic issue was addressed with improved restrictions.
Other sources
Accounts. This issue was addressed with improved data protection.
— Apple
An access issue existed with privileged API calls. This issue was addressed with additional restrictions. This issue is fixed in iOS 16.2 and iPadOS 16.2, tvOS 16.2, watchOS 9.2. A user may be able to elevate privileges.
— MITRE
AppleAVD. An out-of-bounds write issue was addressed with improved input validation.
— Apple
AppleMobileFileIntegrity. This issue was addressed by enabling hardened runtime.
— Apple
AVEVideoEncoder. A logic issue was addressed with improved checks.
— Apple
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2022-42843
- CVE-2022-46694
- CVE-2022-42865
- CVE-2022-42848
- CVE-2022-46693
- CVE-2022-42851
- CVE-2022-42864
- CVE-2022-46690
- CVE-2022-42837
- CVE-2022-46689
- CVE-2022-46701
- CVE-2022-42842
- CVE-2022-42845
- CVE-2022-48618
- CVE-2022-40303
- CVE-2022-40304
- CVE-2022-42855
- CVE-2022-46695
- CVE-2022-42849
- CVE-2022-42866
- CVE-2022-46705
- CVE-2022-42867
- CVE-2022-46691
- CVE-2022-46692
- CVE-2022-42852
- CVE-2022-46696
- CVE-2022-46700
- CVE-2022-46698
- CVE-2022-46699
- CVE-2022-42863
- CVE-2022-42856
- CVE-2022-46717
- CVE-2022-42859
- CVE-2022-46703
- CVE-2022-43454
- CVE-2022-48610
- CVE-2022-46720
- CVE-2022-46702
- CVE-2022-42850
- CVE-2022-42846
- CVE-2022-46710
- CVE-2022-42861
- CVE-2022-42844
- CVE-2022-42839
- CVE-2022-46716
- CVE-2022-32943
- CVE-2022-42840
- CVE-2022-42862
- CVE-2022-46718
- CVE-2022-32919
- CVE-2022-46725
Frequently Asked Questions
What is CVE-2022-42849?
CVE-2022-42849 is a vulnerability related to an access issue with privileged API calls in various Apple software, including iOS, iPadOS, watchOS, and tvOS.
How does CVE-2022-42849 affect Apple devices?
CVE-2022-42849 affects Apple devices running iOS up to version 16.2, iPadOS up to version 16.2, watchOS up to version 9.2, and tvOS up to version 16.2.
What is the severity of CVE-2022-42849?
The severity of CVE-2022-42849 is not mentioned in the provided information.
How can I fix CVE-2022-42849?
To fix CVE-2022-42849, you should update your Apple device to the latest available software version.
Where can I find more information about CVE-2022-42849?
You can find more information about CVE-2022-42849 on the Apple support website. References: [1](https://support.apple.com/en-us/HT213530), [2](https://support.apple.com/en-us/HT213536), [3](https://support.apple.com/en-us/HT213535).