CVE-2022-22657
Apple Security Advisory 2022-03-14-4
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A memory initialization issue was addressed with improved memory handling. This issue is fixed in Logic Pro 10.7.3, GarageBand 10.4.6, macOS Monterey 12.3. Opening a maliciously crafted file may lead to unexpected application termination or arbitrary code execution.
Se abordó un problema de inicialización de la memoria con una administración de memoria mejorada. Este problema es corregido en Logic Pro versión 10.7.3, GarageBand versión 10.4.6 y macOS Monterey versión 12.3. La apertura de un archivo diseñado de forma maliciosa puede conllevar a una finalización no esperada de la aplicación o una ejecución de código arbitrario
macOS Monterey 12.3 addresses buffer overflow, bypass, code execution, denial of service, null pointer, out of bounds read, out of bounds write, and use-after-free vulnerabilities.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-01-05 CVE Reserved
- 2022-03-15 CVE Published
- 2024-08-03 CVE Updated
- 2025-04-13 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-665: Improper Initialization
CAPEC
References (3)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://support.apple.com/en-us/HT213183 | 2022-03-25 | |
https://support.apple.com/en-us/HT213190 | 2022-03-25 | |
https://support.apple.com/en-us/HT213191 | 2022-03-25 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Apple Search vendor "Apple" | Garageband Search vendor "Apple" for product "Garageband" | < 10.4.6 Search vendor "Apple" for product "Garageband" and version " < 10.4.6" | - |
Affected
| ||||||
Apple Search vendor "Apple" | Logic Pro X Search vendor "Apple" for product "Logic Pro X" | < 10.7.3 Search vendor "Apple" for product "Logic Pro X" and version " < 10.7.3" | - |
Affected
| ||||||
Apple Search vendor "Apple" | Macos Search vendor "Apple" for product "Macos" | < 12.3 Search vendor "Apple" for product "Macos" and version " < 12.3" | - |
Affected
|