CVE-2022-22657

A memory initialization issue was addressed with improved memory handling. This issue is fixed in Logic Pro 10.7.3, GarageBand 10.4.6, macOS Monterey 12.3. Opening a maliciously crafted file may lead to unexpected application termination or arbitrary code execution.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:garageband:*:*:*:*:*:*:*:*
cpe:2.3:a:apple:logic_pro_x:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

25 Mar 2022, 20:05

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : 6.8
v3 : 7.8
CWE CWE-665
CPE cpe:2.3:a:apple:logic_pro_x:*:*:*:*:*:*:*:*
cpe:2.3:a:apple:garageband:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
References (MISC) https://support.apple.com/en-us/HT213183 - (MISC) https://support.apple.com/en-us/HT213183 - Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213190 - (MISC) https://support.apple.com/en-us/HT213190 - Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213191 - (MISC) https://support.apple.com/en-us/HT213191 - Vendor Advisory

18 Mar 2022, 19:12

Type Values Removed Values Added
New CVE

Information

Published : 2022-03-18 18:15

Updated : 2024-02-04 22:29


NVD link : CVE-2022-22657

Mitre link : CVE-2022-22657

CVE.ORG link : CVE-2022-22657


JSON object : View

Products Affected

apple

  • logic_pro_x
  • garageband
  • macos
CWE
CWE-665

Improper Initialization