PT-2022-7234 · Apple · Apple Macos

Csaba Fitzl

+1

·

Published

2022-10-24

·

Updated

2024-01-17

·

CVE-2022-48577

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions macOS versions prior to Ventura 13
Description The issue is related to insufficient access control in the APFS component of the macOS operating system. Exploitation of this issue may allow an attacker to disclose protected information. An app may be able to access user-sensitive data due to this access issue.
Recommendations For macOS versions prior to Ventura 13, update to macOS Ventura 13 to resolve the issue. As a temporary workaround, consider restricting access to sensitive data until the update is applied.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2024-00530
CVE-2022-48577

Affected Products

Apple Macos