ID

VAR-202210-1483


CVE

CVE-2022-42819


TITLE

Apple macOS Security hole

Trust: 0.6

sources: CNNVD: CNNVD-202210-1659

DESCRIPTION

An access issue was addressed with improved access restrictions. This issue is fixed in macOS Big Sur 11.7, macOS Ventura 13, macOS Monterey 12.6. An app may be able to read sensitive location information

Trust: 0.99

sources: NVD: CVE-2022-42819 // VULHUB: VHN-439602

AFFECTED PRODUCTS

vendor:applemodel:macosscope:gteversion:11.0

Trust: 1.0

vendor:applemodel:macosscope:ltversion:12.6

Trust: 1.0

vendor:applemodel:macosscope:ltversion:11.7

Trust: 1.0

vendor:applemodel:macosscope:gteversion:12.0

Trust: 1.0

sources: NVD: CVE-2022-42819

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2022-42819
value: MEDIUM

Trust: 1.0

CNNVD: CNNVD-202210-1659
value: MEDIUM

Trust: 0.6

nvd@nist.gov: CVE-2022-42819
baseSeverity: MEDIUM
baseScore: 5.5
vectorString: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: REQUIRED
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 1.8
impactScore: 3.6
version: 3.1

Trust: 1.0

sources: CNNVD: CNNVD-202210-1659 // NVD: CVE-2022-42819

PROBLEMTYPE DATA

problemtype:NVD-CWE-noinfo

Trust: 1.0

sources: NVD: CVE-2022-42819

THREAT TYPE

local

Trust: 0.6

sources: CNNVD: CNNVD-202210-1659

TYPE

other

Trust: 0.6

sources: CNNVD: CNNVD-202210-1659

PATCH

title:Apple macOS Security vulnerabilitiesurl:http://123.124.177.30/web/xxk/bdxqById.tag?id=212677

Trust: 0.6

sources: CNNVD: CNNVD-202210-1659

EXTERNAL IDS

db:NVDid:CVE-2022-42819

Trust: 1.7

db:AUSCERTid:ESB-2022.5300

Trust: 0.6

db:CNNVDid:CNNVD-202210-1659

Trust: 0.6

db:VULHUBid:VHN-439602

Trust: 0.1

sources: VULHUB: VHN-439602 // CNNVD: CNNVD-202210-1659 // NVD: CVE-2022-42819

REFERENCES

url:https://support.apple.com/en-us/ht213488

Trust: 2.3

url:https://support.apple.com/en-us/ht213443

Trust: 1.7

url:https://support.apple.com/en-us/ht213444

Trust: 1.7

url:https://www.auscert.org.au/bulletins/esb-2022.5300

Trust: 0.6

url:https://cxsecurity.com/cveshow/cve-2022-42819/

Trust: 0.6

url:https://vigilance.fr/vulnerability/apple-macos-multiple-vulnerabilities-39702

Trust: 0.6

sources: VULHUB: VHN-439602 // CNNVD: CNNVD-202210-1659 // NVD: CVE-2022-42819

SOURCES

db:VULHUBid:VHN-439602
db:CNNVDid:CNNVD-202210-1659
db:NVDid:CVE-2022-42819

LAST UPDATE DATE

2024-08-14T12:58:48.326000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-439602date:2022-11-03T00:00:00
db:CNNVDid:CNNVD-202210-1659date:2022-11-04T00:00:00
db:NVDid:CVE-2022-42819date:2022-11-03T12:50:58.093

SOURCES RELEASE DATE

db:VULHUBid:VHN-439602date:2022-11-01T00:00:00
db:CNNVDid:CNNVD-202210-1659date:2022-10-24T00:00:00
db:NVDid:CVE-2022-42819date:2022-11-01T20:15:23.943