PT-2022-7235 · Apple · Apple Macos

Mickey Jin

+1

·

Published

2022-10-24

·

Updated

2024-03-13

·

CVE-2022-42816

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions macOS versions prior to 13
Description A logic issue was addressed with improved state management, which may allow an app to modify protected parts of the file system. The issue is related to insufficient access control in the Beta Access Utility component of the macOS operating system, potentially enabling an attacker to modify arbitrary files.
Recommendations For versions prior to 13, update to macOS Ventura 13 to resolve the issue. As a temporary workaround, consider restricting access to sensitive file system areas to minimize the risk of exploitation.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2024-00531
CVE-2022-42816

Affected Products

Apple Macos