An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. An application may be able to execute arbitrary code with kernel privileges.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://support.apple.com/en-us/HT213255 | vendor advisory |
https://support.apple.com/en-us/HT213256 | vendor advisory |
https://support.apple.com/en-us/HT213257 | vendor advisory |