First published: Mon Mar 14 2022(Updated: )
A memory corruption issue was addressed with improved validation. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Monterey 12.3, watchOS 8.5. An application may be able to execute arbitrary code with kernel privileges.
Credit: an anonymous researcher sqrtpwn sqrtpwn sqrtpwn an anonymous researcher sqrtpwn product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS Monterey | <12.3 | 12.3 |
Apple tvOS | <15.4 | 15.4 |
Apple iPadOS | <15.4 | |
Apple iPhone OS | <15.4 | |
Apple macOS | >=12.0<12.3 | |
Apple tvOS | <15.4 | |
Apple watchOS | <8.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID of this issue is CVE-2022-22640.
The affected software includes macOS Monterey 12.3, Apple watchOS up to 8.5, Apple iOS up to 15.4, Apple iPadOS up to 15.4, and Apple tvOS up to 15.4.
The severity of CVE-2022-22640 is not specified.
To fix CVE-2022-22640, make sure to update your software to the latest version provided by Apple.
More information about CVE-2022-22640 can be found on the Apple support page: https://support.apple.com/en-us/HT213186