CVE-2022-22674: Apple macOS Out-of-Bounds Read Vulnerability
An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in macOS Monterey 12.3.1, Security Update 2022-004 Catalina, macOS Big Sur 11.6.6. A local user may be able to read kernel memory.
Credit
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2022-22674.
What is the title of the vulnerability?
The title of the vulnerability is Apple macOS Out-of-Bounds Read Vulnerability.
What is the description of the vulnerability?
The description of the vulnerability is an out-of-bounds read issue in the Intel Graphics Driver, which may lead to the disclosure of kernel memory and has been addressed with improved input validation.
Which software versions are affected by the vulnerability?
The vulnerability affects Apple macOS Monterey up to version 12.3.1, Apple macOS Big Sur up to version 11.6.6, and Apple macOS Catalina.
Has this vulnerability been actively exploited?
Apple is aware of a report that this vulnerability may have been actively exploited.
Where can I find more information about this vulnerability?
You can find more information about this vulnerability on the Apple support website. Please refer to the following links: [link1](https://support.apple.com/en-us/HT213255), [link2](https://support.apple.com/en-us/HT213220), [link3](https://support.apple.com/en-us/HT213256).