First published: Mon Mar 14 2022(Updated: )
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Big Sur 11.6.5, Security Update 2022-003 Catalina, watchOS 8.5, macOS Monterey 12.3. An application may be able to execute arbitrary code with kernel privileges.
Credit: Alex an anonymous researcher Alex an anonymous researcher Alex an anonymous researcher an anonymous researcher Alex Alex an anonymous researcher Alex an anonymous researcher product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple tvOS | <15.4 | 15.4 |
Apple macOS Monterey | <12.3 | 12.3 |
Apple watchOS | <8.5 | 8.5 |
Apple Catalina | ||
Apple macOS Big Sur | <11.6.5 | 11.6.5 |
Apple iOS | <15.4 | 15.4 |
Apple iPadOS | <15.4 | 15.4 |
Apple iPadOS | <15.4 | |
Apple iPhone OS | <15.4 | |
Apple Mac OS X | >=10.15<10.15.7 | |
Apple Mac OS X | =10.15.7-security_update_2022-001 | |
Apple Mac OS X | =10.15.7-security_update_2022-002 | |
Apple macOS | >=11.6<11.6.5 | |
Apple macOS | >=12.0<12.3 | |
Apple macOS | =10.15.7 | |
Apple tvOS | <15.4 | |
Apple watchOS | <8.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
CVE-2022-22613 is a vulnerability in the Kernel that allows an attacker to perform an out-of-bounds write attack.
CVE-2022-22613 affects Apple Catalina, macOS Big Sur up to version 11.6.5, watchOS up to version 8.5, iOS up to version 15.4, iPadOS up to version 15.4, tvOS up to version 15.4, and macOS Monterey up to version 12.3.
CVE-2022-22613 is a serious vulnerability as it allows an attacker to write data outside of the bounds of a specific memory region, which can lead to remote code execution or system crashes.
To fix CVE-2022-22613, ensure that you have the latest security updates installed for your affected software versions.
You can find more information about CVE-2022-22613 on the official Apple support website: [link](https://support.apple.com/en-us/HT213186)