Out-of-bounds write in Apple iOS and iPadOS - CVE-2022-42827
Published: October 24, 2022
Vulnerability details
The vulnerability allows a local application to escalate privileges on the system.
The vulnerability exists due to a boundary error within the OS kernel component. A local application can trigger an out-of-bounds write error and execute arbitrary code with kernel privileges.
Note, the vulnerability is being actively exploited in the wild.
Affected software
iPadOS
How to mitigate CVE-2022-42827
iPadOS - addressed in versions 16.1 20B82, 15.7.1 19H117