QID 376553

Date Published: 2022-04-26

QID 376553: Apple MacOS Monterey Arbitrary Code Execution Vulnerability (HT213092)

macOS Monterey (version 12) is the 18th and current major release of macOS, Apple's desktop operating system for Macintosh computers.

Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.. Affected Versions:
Apple MacOS Monterey version before 12.2.1

QID Detection Logic:
This QID checks for vulnerable versions of Monterey using sw_vers.

A malicious application may be able to execute arbitrary code privileges

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as High - 6.8 severity.
  • Solution
    The updates can be downloaded from Apple Downloads.

    For more information regarding the update can be found at HT213092.

    Vendor References

    CVEs related to QID 376553

    Software Advisories
    Advisory ID Software Component Link
    HT213092 URL Logo support.apple.com/en-us/HT213092