Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Nov 15, 2022

CVE-2022-42827

High
EPSS 0.2%CISA KEV
Apple/iOS and iPadOS

Description

Apple iOS and iPadOS kernel contain an out-of-bounds write vulnerability which can allow an application to perform code execution with kernel privileges.

EPSS — Exploit Probability

0.2%

Higher than 42.0% of all CVEs

Required Action

https://support.apple.com/en-us/HT213489; https://nvd.nist.gov/vuln/detail/CVE-2022-42827

Risk Assessment

ELEVATED
In CISA KEV

Details

Severity
High
EPSS
0.2%
CISA KEV
Yes
Ransomware
Unknown
Articles
0

Timeline

Published

Oct 25, 2022

Added to KEV

Oct 25, 2022

Remediation Due

Nov 15, 2022

Affected Product

Apple

iOS and iPadOS

View all Apple CVEs