← Back to browse · API

CVE-2022-32839

Severity
CRITICAL
CVSS
9.8
EPSS
0.03055
Risk score
40.27
CISA KEV
No
PoC
No
Published
2022-08-24
Modified
2025-05-29
First seen
2026-08-07
Aliases
EUVD-2022-35905, GHSA-26RV-Q89R-636R
Products
Apple:macOS unspecified <11.6, Apple:macOS unspecified <12.5, Apple:macOS unspecified <2022, Apple:tvOS unspecified <15.6, Apple:watchOS unspecified <15.6, Apple:watchOS unspecified <8.7
Sources
euvd EUVD-2022-35905

Description

The issue was addressed with improved bounds checks. This issue is fixed in macOS Monterey 12.5, macOS Big Sur 11.6.8, Security Update 2022-005 Catalina, iOS 15.6 and iPadOS 15.6, tvOS 15.6, watchOS 8.7. A remote user may cause an unexpected app termination or arbitrary code execution.

References