CVE-2022-32816

medium
Published 2022-11-15 · Modified 2022-11-15
CVSS v3
CVSS v2
VIR risk
5.5

Description

The issue was addressed with improved UI handling. This issue is fixed in watchOS 8.7, tvOS 15.6, iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5. Visiting a website that frames malicious content may lead to UI spoofing.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2022-32816

vendor Authored 2026-05-27

Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2022-32816.html

vendor Authored 2026-05-27

Vendor advisory: redhat — https://access.redhat.com/errata/RHSA-2022:8054

OS impact

OSVersionStatusFixed in
arch archfixed2.36.5-1
redhat rhel9fixed
suse slesaffected
debian debianbookwormfixed2.36.6-1
debian debianbullseyefixed2.36.6-1~deb11u1
debian debianforkyfixed2.36.6-1
debian debiansidfixed2.36.6-1
debian debiantrixiefixed2.36.6-1

References

Verify integrity in audit chain (admin only). AS-IS.