CVE-2022-22674

MEDIUM KEV

Apple Mac OS X < 10.15.7 - Out-of-Bounds Read

Title source: rule

Description

An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in macOS Monterey 12.3.1, Security Update 2022-004 Catalina, macOS Big Sur 11.6.6. A local user may be able to read kernel memory.

Scores

CVSS v3 5.5
EPSS 0.0022
EPSS Percentile 44.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Details

CISA KEV 2022-04-04
VulnCheck KEV 2022-03-31
InTheWild.io 2022-03-31
ENISA EUVD EUVD-2022-27819
CWE
CWE-125
Status published
Products (3)
apple/macos 11.0 - 11.6.6
apple/mac_os_x 10.15.7 (15 CPE variants)
apple/mac_os_x 10.15 - 10.15.7
Published May 26, 2022
KEV Added Apr 04, 2022
Tracked Since Feb 18, 2026