CVE-2022-26770
Summary
| CVE | CVE-2022-26770 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-05-26 20:15:00 UTC |
| Updated | 2022-06-08 20:47:00 UTC |
| Description | An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. A malicious application may be able to execute arbitrary code with kernel privileges. |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|
| Operating System |
Apple |
Macos |
All |
All |
All |
All |
| Operating System |
Apple |
Mac Os X |
All |
All |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
- |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
security_update_2020 |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
security_update_2020-001 |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
security_update_2020-005 |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
security_update_2020-007 |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
security_update_2021-001 |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
security_update_2021-002 |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
security_update_2021-003 |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
security_update_2021-006 |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
security_update_2021-007 |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
security_update_2021-008 |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
security_update_2022-001 |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
security_update_2022-002 |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
security_update_2022-003 |
All |
All |
| Operating System |
Apple |
Mac Os X |
10.15.7 |
supplemental_update |
All |
All |
References
| Reference | Source | Link | Tags |
|---|
| About the security content of Security Update 2022-004 Catalina - Apple Support |
MISC |
support.apple.com |
|
| About the security content of macOS Big Sur 11.6.6 - Apple Support |
MISC |
support.apple.com |
|
| About the security content of macOS Monterey 12.4 - Apple Support |
MISC |
support.apple.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 376607 Apple macOS Security Update 2022-004 Catalina (HT213255)
- 376608 Apple MacOS Big Sur 11.6.6 Not Installed (HT213256)
- 376612 Apple macOS Monterey 12.4 Not Installed (HT213257)