PT-2022-7234 · Apple · Apple Macos
Csaba Fitzl
+1
·
Published
2022-10-24
·
Updated
2024-01-17
·
CVE-2022-48577
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
macOS versions prior to Ventura 13
Description
The issue is related to insufficient access control in the APFS component of the macOS operating system. Exploitation of this issue may allow an attacker to disclose protected information. An app may be able to access user-sensitive data due to this access issue.
Recommendations
For macOS versions prior to Ventura 13, update to macOS Ventura 13 to resolve the issue. As a temporary workaround, consider restricting access to sensitive data until the update is applied.
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apple Macos