vulnerability
OS X update for PackageKit (CVE-2022-26688)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:L/AC:L/Au:N/C:N/I:C/A:N) | May 26, 2022 | May 26, 2022 | Dec 11, 2023 |
Severity
5
CVSS
(AV:L/AC:L/Au:N/C:N/I:C/A:N)
Published
May 26, 2022
Added
May 26, 2022
Modified
Dec 11, 2023
Description
An issue in the handling of symlinks was addressed with improved validation. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey 12.3, macOS Big Sur 11.6.5. A malicious app with root privileges may be able to modify the contents of system files.
Solution(s)
apple-osx-security-update-2022-003-catalinaapple-osx-upgrade-11_6_5apple-osx-upgrade-12_3

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.