First published: Mon May 16 2022(Updated: )
A memory corruption issue was addressed with improved validation. This issue is fixed in tvOS 15.5, iOS 15.5 and iPadOS 15.5, Security Update 2022-004 Catalina, watchOS 8.6, macOS Big Sur 11.6.6, macOS Monterey 12.4. An application may be able to execute arbitrary code with kernel privileges.
Credit: Peter Nguyễn Vũ Hoàng @peternguyen14 STAR LabsPeter Nguyễn Vũ Hoàng @peternguyen14 STAR LabsPeter Nguyễn Vũ Hoàng @peternguyen14 STAR LabsPeter Nguyễn Vũ Hoàng @peternguyen14 STAR LabsPeter Nguyễn Vũ Hoàng @peternguyen14 STAR LabsPeter Nguyễn Vũ Hoàng @peternguyen14 STAR Labs product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple watchOS | <8.6 | 8.6 |
Apple tvOS | <15.5 | 15.5 |
Apple Catalina | ||
Apple macOS Big Sur | <11.6.6 | 11.6.6 |
<12.4 | 12.4 | |
Apple iOS | <15.5 | 15.5 |
Apple iPadOS | <15.5 | 15.5 |
Apple iPadOS | <15.5 | |
Apple iPhone OS | <15.5 | |
Apple Mac OS X | <10.15.7 | |
Apple Mac OS X | =10.15.7 | |
Apple Mac OS X | =10.15.7-security_update_2020-001 | |
Apple Mac OS X | =10.15.7-security_update_2021-001 | |
Apple Mac OS X | =10.15.7-security_update_2021-002 | |
Apple Mac OS X | =10.15.7-security_update_2021-003 | |
Apple Mac OS X | =10.15.7-security_update_2021-004 | |
Apple Mac OS X | =10.15.7-security_update_2021-005 | |
Apple Mac OS X | =10.15.7-security_update_2021-006 | |
Apple Mac OS X | =10.15.7-security_update_2021-007 | |
Apple Mac OS X | =10.15.7-security_update_2021-008 | |
Apple Mac OS X | =10.15.7-security_update_2022-001 | |
Apple Mac OS X | =10.15.7-security_update_2022-002 | |
Apple Mac OS X | =10.15.7-security_update_2022-003 | |
Apple macOS | >=11.0<11.6.6 | |
Apple macOS | >=12.0<12.4 | |
Apple watchOS | <8.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2022-26714.
The affected software includes Apple watchOS 8.6, Apple tvOS 15.5, Apple macOS Catalina, Apple macOS Big Sur 11.6.6, Apple iOS 15.5, Apple iPadOS 15.5, and Apple macOS Monterey 12.4.
The severity of CVE-2022-26714 is not mentioned in the provided information.
CVE-2022-26714 was addressed with improved validation.
You can find more information about CVE-2022-26714 on the Apple support website using the following links: [Link 1](https://support.apple.com/en-us/HT213254), [Link 2](https://support.apple.com/en-us/HT213257), [Link 3](https://support.apple.com/en-us/HT213255).