Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2022-32942

Description

The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6.2, macOS Ventura 13.1, macOS Big Sur 11.7.2. An app may be able to execute arbitrary code with kernel privileges.

POC

Reference

- http://seclists.org/fulldisclosure/2022/Dec/23

- http://seclists.org/fulldisclosure/2022/Dec/24

- http://seclists.org/fulldisclosure/2022/Dec/25

Github

- https://github.com/ARPSyndicate/cvemon