CVE-2022-22627
CVE-2022-22627
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.0%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
18 Mar 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.6.5, macOS Monterey 12.3, Security Update 2022-003 Catalina. Processing a maliciously crafted AppleScript binary may result in unexpected application termination or disclosure of process memory.
Affected products
Apple · macOSWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →