PT-2022-15623 · Apple · Apple Macos

Mickey Jin

+1

·

Published

2022-01-26

·

Updated

2023-08-08

·

CVE-2022-22676

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions macOS versions prior to 12.2
Description An event handler validation issue in the XPC Services API was addressed by removing the service. This issue may allow an application to delete files for which it does not have permission.
Recommendations For versions prior to 12.2, update to macOS Monterey 12.2 to resolve the issue.

Fix

Related Identifiers

CVE-2022-22676
ZDI-22-878

Affected Products

Apple Macos