An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in macOS Monterey 12.3.1, Security Update 2022-004 Catalina, macOS Big Sur 11.6.6. A local user may be able to read kernel memory.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Apache | — | — | Oct 14, 2024 | May 26, 2022 |
| Apple Osx Appkit | — | — | Oct 14, 2024 | May 26, 2022 |
| Apple Osx Appleavd | — | — | Oct 14, 2024 | May 26, 2022 |
| Apple Osx Appleevents | — | — | Oct 14, 2024 | May 26, 2022 |
| Apple Osx Applegraphicscontrol | — | — | Oct 14, 2024 | May 26, 2022 |
| Apple Osx Applescript | — | — | Oct 14, 2024 | May 26, 2022 |
| Apple Osx Coretypes | — | — | Oct 14, 2024 | May 26, 2022 |
| Apple Osx Cvms | — | — | Oct 14, 2024 | May 26, 2022 |
| Apple Osx Driverkit | — | — | Oct 14, 2024 | May 26, 2022 |
| Apple Osx Graphicsdrivers | — | Apply OS X security update 2022-004 CatalinaUpgrade macOS to the latest version | May 17, 2022 | May 17, 2022 |
| Apple Osx Intelgraphicsdriver | — | Upgrade macOS to the latest version | Apr 1, 2022 | Apr 1, 2022 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub