CVE-2022-32792

medium
Published 2022-11-15 · Modified 2022-11-15
CVSS v3
CVSS v2
VIR risk
5.5

Description

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 15.6 and iPadOS 15.6, watchOS 8.7, tvOS 15.6, macOS Monterey 12.5, Safari 15.6. Processing maliciously crafted web content may lead to arbitrary code execution.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2022-32792

vendor Authored 2026-05-27

Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2022-32792.html

vendor Authored 2026-05-27

Vendor advisory: redhat — https://access.redhat.com/errata/RHSA-2022:8054

OS impact

OSVersionStatusFixed in
arch archfixed2.36.5-1
redhat rhel9fixed
suse slesaffected
debian debianbookwormfixed2.36.6-1
debian debianbullseyefixed2.36.6-1~deb11u1
debian debianforkyfixed2.36.6-1
debian debiansidfixed2.36.6-1
debian debiantrixiefixed2.36.6-1

References

Verify integrity in audit chain (admin only). AS-IS.