First published: Wed Jan 26 2022(Updated: )
A memory corruption issue was addressed with improved validation. This issue is fixed in tvOS 15.3, iOS 15.3 and iPadOS 15.3, watchOS 8.4, macOS Monterey 12.2. Processing a maliciously crafted file may lead to arbitrary code execution.
Credit: Mickey Jin @patch1t Trend MicroMickey Jin @patch1t Trend MicroMickey Jin @patch1t Trend MicroMickey Jin @patch1t Trend Micro product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple tvOS | <15.3 | 15.3 |
Apple watchOS | <8.4 | 8.4 |
Apple macOS Monterey | <12.2 | 12.2 |
Apple iOS | <15.3 | 15.3 |
Apple iPadOS | <15.3 | 15.3 |
Apple iPadOS | <15.3 | |
Apple iPhone OS | <15.3 | |
Apple macOS | <12.2 | |
Apple tvOS | <15.3 | |
Apple watchOS | <8.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-22584 is a memory corruption issue in ColorSync that was addressed with improved validation.
CVE-2022-22584 affects macOS Monterey 12.2, watchOS up to exclusive version 8.4, iOS up to exclusive version 15.3, iPadOS up to exclusive version 15.3, and tvOS up to exclusive version 15.3.
The severity of CVE-2022-22584 is not specified in the provided information.
To fix CVE-2022-22584, it is recommended to update to the specified remedy versions of the affected software.
You can find more information about CVE-2022-22584 at the following references: [link1], [link2], [link3].