PT-2022-21558 · Apple · Apple Macos
Mickey Jin
+1
·
Published
2022-07-20
·
Updated
2024-07-03
·
CVE-2022-32897
CVSS v3.1
8.1
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
macOS versions prior to 12.5
Description
A memory corruption issue was addressed with improved validation. Processing a maliciously crafted tiff file may lead to arbitrary code execution.
Recommendations
For versions prior to 12.5, update to macOS Monterey 12.5 to resolve the issue. As a temporary workaround, consider avoiding the processing of tiff files from untrusted sources until the update is applied.
Fix
Memory Corruption
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Apple Macos