Actively Exploited in the Wild
This vulnerability is being actively exploited in the wild.
Apple WebKit Out-of-Bounds Write Vulnerability Allowing Arbitrary Code Execution
Vulnerability
A vulnerability has been identified in the WebKit component of Apple iOS, iPadOS, macOS Monterey, and Safari. This vulnerability involves an out-of-bounds write issue that was addressed with improved bounds checking. However, processing maliciously crafted web content could still lead to arbitrary code execution. Apple is aware of reports that this vulnerability may have been actively exploited.
Impact
Exploitation of this vulnerability could lead to arbitrary code execution on the affected system.
Remediation
Users can upgrade to iOS 15.6.1, iPadOS 15.6.1, macOS Monterey 12.5.1, or Safari 15.6.1 to address this vulnerability. Instructions for updating these Apple products are available on the Apple Support website.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
