CVE-2022-22674

CVE Published 2022-05-26
Related CWE(s) CWE-125: Out-of-bounds Read
Related Vendor(s) apple
Related Product(s) mac_os_x, macos
Exploitation Reported (CISA KEV) 2022-04-04
CVSS 3 Base Score 5.5 (MEDIUM)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector LOCAL

An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in macOS Monterey 12.3.1, Security Update 2022-004 Catalina, macOS Big Sur 11.6.6. A local user may be able to read kernel memory.

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

Associated CAPEC Patterns

References