A memory corruption issue was addressed with improved validation. This issue is fixed in watchOS 8.6, tvOS 15.5, macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5. An attacker that has already achieved kernel code execution may be able to bypass kernel memory mitigations.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/HT213253 | Vendor Advisory |
https://support.apple.com/en-us/HT213254 | Vendor Advisory |
https://support.apple.com/en-us/HT213257 | Vendor Advisory |
https://support.apple.com/en-us/HT213258 | Vendor Advisory |
https://support.apple.com/en-us/HT213253 | Vendor Advisory |
https://support.apple.com/en-us/HT213254 | Vendor Advisory |
https://support.apple.com/en-us/HT213257 | Vendor Advisory |
https://support.apple.com/en-us/HT213258 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 06:54
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.apple.com/en-us/HT213253 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT213254 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT213257 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT213258 - Vendor Advisory |
08 Jun 2022, 12:55
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 2.6
v3 : 4.7 |
CWE | CWE-787 | |
CPE | cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* |
|
References | (MISC) https://support.apple.com/en-us/HT213254 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT213253 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT213258 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT213257 - Vendor Advisory |
26 May 2022, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-05-26 20:15
Updated : 2024-11-21 06:54
NVD link : CVE-2022-26764
Mitre link : CVE-2022-26764
CVE.ORG link : CVE-2022-26764
JSON object : View
Products Affected
apple
- iphone_os
- watchos
- tvos
- macos
- ipados
CWE
CWE-787
Out-of-bounds Write