Unrated severityCISA KEVNVD Advisory· Published Mar 18, 2022· Updated Oct 21, 2025
CVE-2022-22620
CVE-2022-22620
Description
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.2.1, iOS 15.3.1 and iPadOS 15.3.1, Safari 15.3 (v. 16612.4.9.1.8 and 15612.4.9.1.8). Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited..
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
47- Range: 15.3.1
- Range: 15.3 (v. 16612.4.9.1.8 and 15612.4.9.1.8)
- Range: 12.2.1
- Range: 15.3.1
- osv-coords41 versionspkg:rpm/almalinux/webkit2gtk3pkg:rpm/almalinux/webkit2gtk3-develpkg:rpm/almalinux/webkit2gtk3-jscpkg:rpm/almalinux/webkit2gtk3-jsc-develpkg:rpm/opensuse/webkit2gtk3&distro=openSUSE%20Leap%2015.3pkg:rpm/suse/webkit2gtk3&distro=HPE%20Helion%20OpenStack%208pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Enterprise%20Storage%206pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Enterprise%20Storage%207pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP1-ESPOSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP1-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-ESPOSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-ESPOSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2015%20SP2pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-BCLpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3-BCLpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP1-BCLpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP1-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-BCLpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2015-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP1pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP2pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Manager%20Proxy%204.1pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Manager%20Retail%20Branch%20Server%204.1pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Manager%20Server%204.1pkg:rpm/suse/webkit2gtk3&distro=SUSE%20OpenStack%20Cloud%208pkg:rpm/suse/webkit2gtk3&distro=SUSE%20OpenStack%20Cloud%209pkg:rpm/suse/webkit2gtk3&distro=SUSE%20OpenStack%20Cloud%20Crowbar%208pkg:rpm/suse/webkit2gtk3&distro=SUSE%20OpenStack%20Cloud%20Crowbar%209
< 2.34.6-1.el8+ 40 more
- (no CPE)range: < 2.34.6-1.el8
- (no CPE)range: < 2.34.6-1.el8
- (no CPE)range: < 2.34.6-1.el8
- (no CPE)range: < 2.34.6-1.el8
- (no CPE)range: < 2.34.6-29.1
- (no CPE)range: < 2.34.6-2.88.1
- (no CPE)range: < 2.34.6-3.97.1
- (no CPE)range: < 2.34.6-29.1
- (no CPE)range: < 2.34.6-3.97.1
- (no CPE)range: < 2.34.6-3.97.1
- (no CPE)range: < 2.34.6-29.1
- (no CPE)range: < 2.34.6-29.1
- (no CPE)range: < 2.34.6-3.97.1
- (no CPE)range: < 2.34.6-3.97.1
- (no CPE)range: < 2.34.6-29.1
- (no CPE)range: < 2.34.6-29.1
- (no CPE)range: < 2.34.6-29.1
- (no CPE)range: < 2.34.6-2.88.1
- (no CPE)range: < 2.34.6-2.88.1
- (no CPE)range: < 2.34.6-2.88.1
- (no CPE)range: < 2.34.6-2.88.1
- (no CPE)range: < 2.34.6-2.88.1
- (no CPE)range: < 2.34.6-3.97.1
- (no CPE)range: < 2.34.6-3.97.1
- (no CPE)range: < 2.34.6-29.1
- (no CPE)range: < 2.34.6-29.1
- (no CPE)range: < 2.34.6-3.97.1
- (no CPE)range: < 2.34.6-2.88.1
- (no CPE)range: < 2.34.6-2.88.1
- (no CPE)range: < 2.34.6-2.88.1
- (no CPE)range: < 2.34.6-3.97.1
- (no CPE)range: < 2.34.6-3.97.1
- (no CPE)range: < 2.34.6-29.1
- (no CPE)range: < 2.34.6-2.88.1
- (no CPE)range: < 2.34.6-29.1
- (no CPE)range: < 2.34.6-29.1
- (no CPE)range: < 2.34.6-29.1
- (no CPE)range: < 2.34.6-2.88.1
- (no CPE)range: < 2.34.6-2.88.1
- (no CPE)range: < 2.34.6-2.88.1
- (no CPE)range: < 2.34.6-2.88.1
- Range: unspecified
- Apple/Safari (v and )v5Range: unspecified
Patches
Vulnerability mechanics
References
4- security.gentoo.org/glsa/202208-39mitrevendor-advisoryx_refsource_GENTOO
- support.apple.com/en-us/HT213091mitrex_refsource_MISC
- support.apple.com/en-us/HT213092mitrex_refsource_MISC
- support.apple.com/en-us/HT213093mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.