CVE-2022-27226 An issue was found in iRZ Mobile routers' /api/crontab that allows a threat actor to create a crontab entry.
This issue affects all iRZ router models.
iRZ Mobile routers running firmware up to and including 1.1.8 (released on 2019-01-04) are vulnerable. iRZ
CVE-2022-22620 Memory management was improved in macOS Monterey 12.2.1, iOS 15.3.1, and iPadOS 15.3.1. The issue is fixed in Safari 15.3.
This issue is addressed through improved memory handling. Processing maliciously crafted web content may lead to information disclosure. Apple is aware of a report that
CVE-2022-22593 An issue with memory handling was fixed in iOS 15.3, iPadOS 15.3, watchOS 8.4, tvOS 15.3, Security Update 2022-001 Catalina, and macOS Monterey 12.2.
An issue in Bluetooth was addressed with improved support for device encryption. This issue did not affect most users, as only a very small number
CVE-2022-22585 Symlinks were being validated incorrectly in iOS 15.3. This is fixed in iOS 15.3 and later.
An application may be able to access a user's files. This issue may occur through a maliciously crafted URL or through a malformed
CVE-2022-22592 Improved state management was addressed in iOS 15.3, iPadOS 15.3, watchOS 8.4, tvOS 15.3, and Safari 15.3.
This issue is addressed by allowing the X-Frame-Options response header to be set. A maliciously crafted website could exploit this vulnerability to access content protected
Episode
00:00:00
00:00:00