CVE-2022-22606: High severity apple xcode vulnerability
Published Mar 14, 2022
·Updated
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Xcode 13.3. Opening a maliciously crafted file may lead to unexpected application termination or arbitrary code execution.
Other sources
otool. An out-of-bounds read was addressed with improved bounds checking.
Credit
hjy79425575
Affected Software
2 affected componentsFixes available
Apple Xcode<13.3
13.3
Apple Xcode<13.3
Event History
Mar 18, 2022
CVE Published
via MITRE·05:59 PM
Data Sourced
via MITRE·05:59 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is CVE-2022-22606?
CVE-2022-22606 is a vulnerability in otool that allows for an out-of-bounds read due to improved bounds checking.
2
What software is affected by CVE-2022-22606?
Apple Xcode version up to 13.3 is affected by CVE-2022-22606.
3
How can I fix CVE-2022-22606?
To fix CVE-2022-22606, update Apple Xcode to version 13.3 or later.
4
How severe is CVE-2022-22606?
CVE-2022-22606 has a severity rating of medium.
5
Where can I find more information about CVE-2022-22606?
You can find more information about CVE-2022-22606 on the Apple support website: https://support.apple.com/en-us/HT213189