VulnerabilityModified
CVE-2022-42839
This issue was addressed with improved redaction of sensitive information.
LOW 3.3EPSS 0.17%
Does this matter?
Lower severity and a low EPSS score (0.17%). Track it; it rarely justifies an emergency change on its own.
Description
This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1. An app may be able to read sensitive location information.
- CVSS 3.1
- 3.3 LOWCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
- EPSS
- 0.17% probability · 7th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- apple/ipados · apple/iphone os · apple/macos
- Source
- product-security@apple.com
References
- https://support.apple.com/en-us/HT213530Release Notes, Vendor Advisory
- https://support.apple.com/en-us/HT213532Release Notes, Vendor Advisory
- https://support.apple.com/en-us/HT213530Release Notes, Vendor Advisory
- https://support.apple.com/en-us/HT213532Release Notes, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.