
CVE-2022-32929 – Apple Security Advisory 2022-10-27-4
https://notcve.org/view.php?id=CVE-2022-32929
31 Oct 2022 — A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 15.7.1 and iPadOS 15.7.1, iOS 15.7 and iPadOS 15.7, iOS 16.1 and iPadOS 16. An app may be able to access iOS backups. Se solucionó un problema de permisos con restricciones adicionales. Este problema se solucionó en iOS 15.7.1 y iPadOS 15.7.1, iOS 15.7 y iPadOS 15.7, iOS 16.1 y iPadOS 16. • https://support.apple.com/en-us/HT213445 • CWE-732: Incorrect Permission Assignment for Critical Resource •

CVE-2022-32858 – Apple Security Advisory 2022-10-24-2
https://notcve.org/view.php?id=CVE-2022-32858
31 Oct 2022 — The issue was addressed with improved memory handling. This issue is fixed in iOS 16, macOS Ventura 13, watchOS 9. An app may be able to leak sensitive kernel state. El problema se solucionó mejorando el manejo de la memoria. Este problema se solucionó en iOS 16, macOS Ventura 13, watchOS 9. • https://support.apple.com/en-us/HT213446 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2022-32867 – Apple Security Advisory 2022-10-24-2
https://notcve.org/view.php?id=CVE-2022-32867
31 Oct 2022 — This issue was addressed with improved data protection. This issue is fixed in iOS 16, macOS Ventura 13. A user with physical access to an iOS device may be able to read past diagnostic logs. Este problema se solucionó mejorando la protección de datos. Este problema se solucionó en iOS 16, macOS Ventura 13. • https://support.apple.com/en-us/HT213446 • CWE-922: Insecure Storage of Sensitive Information •

CVE-2022-32870 – Apple Security Advisory 2022-10-24-2
https://notcve.org/view.php?id=CVE-2022-32870
31 Oct 2022 — A logic issue was addressed with improved state management. This issue is fixed in iOS 16, macOS Ventura 13, watchOS 9. A user with physical access to a device may be able to use Siri to obtain some call history information. Se abordó una cuestión de lógica con una mejor gestión estatal. Este problema se solucionó en iOS 16, macOS Ventura 13, watchOS 9. • https://support.apple.com/en-us/HT213446 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2022-32875 – Apple Security Advisory 2022-10-27-9
https://notcve.org/view.php?id=CVE-2022-32875
31 Oct 2022 — A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.7, macOS Ventura 13, iOS 16, watchOS 9, macOS Monterey 12.6. An app may be able to read sensitive location information. Se abordó una cuestión de lógica con una mejor gestión estatal. Este problema se solucionó en macOS Big Sur 11.7, macOS Ventura 13, iOS 16, watchOS 9, macOS Monterey 12.6. • https://support.apple.com/en-us/HT213443 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2022-32907 – AppleAVD AppleAVDUserClient::decodeFrameFig Memory Corruption
https://notcve.org/view.php?id=CVE-2022-32907
31 Oct 2022 — This issue was addressed with improved checks. This issue is fixed in tvOS 16, iOS 16, watchOS 9. An app may be able to execute arbitrary code with kernel privileges. Este problema se solucionó con controles mejorados. Este problema se solucionó en tvOS 16, iOS 16, watchOS 9. • https://packetstorm.news/files/id/169930 • CWE-269: Improper Privilege Management •

CVE-2022-32909 – Apple Security Advisory 2022-10-27-3
https://notcve.org/view.php?id=CVE-2022-32909
31 Oct 2022 — The issue was addressed with improved handling of caches. This issue is fixed in iOS 16. An app may be able to access user-sensitive data. El problema se solucionó mejorando el manejo de los cachés. Este problema se solucionó en iOS 16. • https://support.apple.com/en-us/HT213446 • CWE-524: Use of Cache Containing Sensitive Information •

CVE-2022-32926 – Apple Security Advisory 2022-10-27-1
https://notcve.org/view.php?id=CVE-2022-32926
31 Oct 2022 — The issue was addressed with improved bounds checks. This issue is fixed in tvOS 16.1, iOS 15.7.1 and iPadOS 15.7.1, macOS Ventura 13, watchOS 9.1, iOS 16.1 and iPadOS 16. An app with root privileges may be able to execute arbitrary code with kernel privileges. El problema se solucionó con comprobaciones de los límites mejoradas. Este problema se solucionó en tvOS 16.1, iOS 15.7.1 y iPadOS 15.7.1, macOS Ventura 13, watchOS 9.1, iOS 16.1 y iPadOS 16. • https://support.apple.com/en-us/HT213488 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2022-32927 – Apple Security Advisory 2022-10-27-1
https://notcve.org/view.php?id=CVE-2022-32927
31 Oct 2022 — The issue was addressed with improved memory handling. This issue is fixed in iOS 15.7.1 and iPadOS 15.7.1, iOS 16.1 and iPadOS 16. Joining a malicious Wi-Fi network may result in a denial-of-service of the Settings app. El problema se solucionó mejorando el manejo de la memoria. Este problema se solucionó en iOS 15.7.1 y iPadOS 15.7.1, iOS 16.1 y iPadOS 16. • https://support.apple.com/en-us/HT213489 • CWE-400: Uncontrolled Resource Consumption •

CVE-2022-42824 – webkitgtk: sensitive information disclosure issue
https://notcve.org/view.php?id=CVE-2022-42824
31 Oct 2022 — A logic issue was addressed with improved state management. This issue is fixed in tvOS 16.1, macOS Ventura 13, watchOS 9.1, Safari 16.1, iOS 16.1 and iPadOS 16. Processing maliciously crafted web content may disclose sensitive user information. Se abordó un problema lógico con una mejor gestión del estado. Este problema se solucionó en tvOS 16.1, macOS Ventura 13, watchOS 9.1, Safari 16.1, iOS 16.1 y iPadOS 16. • http://www.openwall.com/lists/oss-security/2022/11/04/4 •