CISA Known Exploited Vulnerability

CVE-2022-22587

Apple · iOS and macOS

Apple Memory Corruption Vulnerability

Date added
BOD 22-01 due date
CWE CWE-20, CWE-787
Ransomware Unknown

CISA description

Apple IOMobileFrameBuffer contains a memory corruption vulnerability which can allow a malicious application to execute arbitrary code with kernel privileges.

Required action

Apply updates per vendor instructions.