PT-2022-7235 · Apple · Apple Macos
Mickey Jin
+1
·
Published
2022-10-24
·
Updated
2024-03-13
·
CVE-2022-42816
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
macOS versions prior to 13
Description
A logic issue was addressed with improved state management, which may allow an app to modify protected parts of the file system. The issue is related to insufficient access control in the Beta Access Utility component of the macOS operating system, potentially enabling an attacker to modify arbitrary files.
Recommendations
For versions prior to 13, update to macOS Ventura 13 to resolve the issue. As a temporary workaround, consider restricting access to sensitive file system areas to minimize the risk of exploitation.
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Apple Macos