This issue was addressed by enabling hardened runtime. This issue is fixed in macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5, Security Update 2022-005 Catalina, macOS Big Sur 11.6.8. An app with root privileges may be able to access private information.
CVSS Details
- CVSS 3.1 Base Score: 4.4
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Amd | — | — | Oct 14, 2024 | Sep 23, 2022 |
| Apple Osx Apache | — | — | Oct 14, 2024 | Sep 23, 2022 |
| Apple Osx Applegraphicscontrol | — | — | Oct 14, 2024 | Sep 23, 2022 |
| Apple Osx Applemobilefileintegrity | — | — | Oct 14, 2024 | Sep 23, 2022 |
| Apple Osx Applescript | — | — | Oct 14, 2024 | Sep 23, 2022 |
| Apple Osx Avevideoencoder | — | — | Oct 14, 2024 | Sep 23, 2022 |
| Apple Osx Bluetooth | — | — | Oct 14, 2024 | Sep 23, 2022 |
| Apple Osx Contacts | — | — | Oct 14, 2024 | Sep 23, 2022 |
| Apple Osx Cvms | — | — | Oct 14, 2024 | Sep 23, 2022 |
| Apple Osx Driverkit | — | — | Oct 14, 2024 | Sep 23, 2022 |
| Apple Osx Facetime | — | Apply Apple macOS Security Update 2022-005 CatalinaUpgrade macOS to the latest version | Jul 20, 2022 | Jul 20, 2022 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub