Record summary

CVE-2022-42864 has a selected CVSS score of 7.0 (high); EIP currently links 1 repository PoC.

Description

A race condition was addressed with improved state handling. This issue is fixed in tvOS 16.2, macOS Monterey 12.6.2, macOS Ventura 13.1, macOS Big Sur 11.7.2, iOS 15.7.2 and iPadOS 15.7.2, iOS 16.2 and iPadOS 16.2, watchOS 9.2. An app may be able to execute arbitrary code with kernel privileges.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Dec 13, 2022 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Repository PoCs
1

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 21, 2025 · Source: CVE List

Affected products and versions

4
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied
CVE ListBefore 11.7affected
CVE ListBefore 16.2affected
Before 13.1affected
Before 12.6affected
Before 15.7affected
CVE ListBefore 9.2affected

Proofs of concept

1

Repository PoCs

GitHubMuirey03/CVE-2022-42864Repository PoCby Muirey03Stars: 68Not analyzed31 files

1.8 MiB

GitHub

PoC details

References

Showing 12 of 15