First published: Wed Jul 20 2022(Updated: )
AppleScript. An out-of-bounds read issue was addressed with improved input validation.
Credit: Ye Zhang @co0py_Cat Baidu SecurityYe Zhang @co0py_Cat Baidu SecurityYe Zhang @co0py_Cat Baidu SecurityYe Zhang @co0py_Cat Baidu SecurityYe Zhang @co0py_Cat Baidu SecurityYe Zhang @co0py_Cat Baidu SecurityYe Zhang @co0py_Cat Baidu Security product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Catalina | ||
Apple macOS Big Sur | <11.6.8 | 11.6.8 |
<12.5 | 12.5 | |
Apple Mac OS X | =10.15.7-security_update_2020-001 | |
Apple Mac OS X | =10.15.7-security_update_2021-001 | |
Apple Mac OS X | =10.15.7-security_update_2021-002 | |
Apple Mac OS X | =10.15.7-security_update_2021-003 | |
Apple Mac OS X | =10.15.7-security_update_2021-004 | |
Apple Mac OS X | =10.15.7-security_update_2021-005 | |
Apple Mac OS X | =10.15.7-security_update_2021-006 | |
Apple Mac OS X | =10.15.7-security_update_2021-007 | |
Apple Mac OS X | =10.15.7-security_update_2021-008 | |
Apple Mac OS X | =10.15.7-security_update_2022-001 | |
Apple Mac OS X | =10.15.7-security_update_2022-002 | |
Apple Mac OS X | =10.15.7-security_update_2022-003 | |
Apple macOS | <10.15.7 | |
Apple macOS | >=11.0<11.6.8 | |
Apple macOS | >=12.0<12.5 | |
Apple macOS | =10.15.7 | |
Apple macOS | =10.15.7-security_update_2022-004 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-32853 is a vulnerability in AppleScript that allows for an out-of-bounds read issue due to improved input validation.
CVE-2022-32853 affects Apple users by potentially allowing an attacker to read sensitive information or cause a denial of service.
CVE-2022-32853 affects Apple products running macOS Catalina, macOS Big Sur (up to version 11.6.8), and macOS Monterey (up to version 12.5).
Yes, Apple has addressed the CVE-2022-32853 vulnerability with improved input validation in macOS Catalina version 11.6.8, macOS Big Sur version 11.6.8, and macOS Monterey version 12.5.
You can find more information about CVE-2022-32853 on Apple's official support page: [link](https://support.apple.com/en-us/HT213345).