CVE-2022-42856: Apple iOS
EPSS8.5%No. 1313 of 1739 in KEV
CVE year2022listed the same year
Same vendor in KEV95
Same product8
| Field | Value |
|---|---|
| Vendor | Apple |
| Product | iOS |
| Name | Apple iOS Type Confusion Vulnerability |
| Added to KEV | 2022-12-14 |
| US federal due date | 2023-01-04 |
| Ransomware use | Unknown |
| CWE | CWE-843 |
CISA description
Apple iOS contains a type confusion vulnerability when processing maliciously crafted web content leading to code execution.
Other entries for this product
| CVE | Vendor / product | Added | EPSS | Ransomware |
|---|---|---|---|---|
| CVE-2016-4657 | Apple iOS | 2022-05-24 | 66.7% | Unknown |
| CVE-2016-4656 | Apple iOS | 2022-05-24 | 23.6% | Unknown |
| CVE-2016-4655 | Apple iOS | 2022-05-24 | 33.3% | Unknown |
| CVE-2019-7287 | Apple iOS | 2022-05-23 | 4.5% | Unknown |
| CVE-2021-30762 | Apple iOS | 2021-11-03 | 10.9% | Unknown |
| CVE-2021-30761 | Apple iOS | 2021-11-03 | 10.5% | Unknown |
| CVE-2021-30666 | Apple iOS | 2021-11-03 | 2.9% | Unknown |
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page
A Apple iOS vulnerability added to CISA's Known Exploited Vulnerabilities catalog on 2022-12-14.