A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.4, watchOS 8.6, tvOS 15.5, macOS Big Sur 11.6.6. An application may be able to execute arbitrary code with kernel privileges.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/HT213256 | Vendor Advisory |
https://support.apple.com/en-us/HT213257 | Vendor Advisory |
https://support.apple.com/en-us/HT213254 | Vendor Advisory |
https://support.apple.com/en-us/HT213253 | Vendor Advisory |
https://support.apple.com/kb/HT213346 | Third Party Advisory |
http://seclists.org/fulldisclosure/2022/Jul/12 | Mailing List Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
09 Jan 2023, 16:41
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* | |
First Time |
Apple ipados
|
27 Oct 2022, 16:41
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:* |
|
References | (CONFIRM) https://support.apple.com/kb/HT213346 - Third Party Advisory | |
References | (FULLDISC) http://seclists.org/fulldisclosure/2022/Jul/12 - Mailing List, Third Party Advisory | |
First Time |
Apple iphone Os
Apple ipad Os |
22 Jul 2022, 06:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
08 Jun 2022, 12:48
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 9.3
v3 : 7.8 |
First Time |
Apple watchos
Apple Apple tvos Apple macos |
|
CPE | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* |
|
CWE | CWE-787 | |
References | (MISC) https://support.apple.com/en-us/HT213253 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT213256 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT213257 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT213254 - Vendor Advisory |
26 May 2022, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-05-26 20:15
Updated : 2023-01-09 16:41
NVD link : CVE-2022-26768
Mitre link : CVE-2022-26768
CVE.ORG link : CVE-2022-26768
JSON object : View
Products Affected
apple
- tvos
- ipados
- macos
- iphone_os
- watchos
CWE
CWE-787
Out-of-bounds Write