Apple kicked off the week with a bang by releasing macOS Monterey 12.3 with several new features, including Universal Control, improved spatial audio support, and an LGBTQ Siri voice, but older Macs got an update just as important. While there are few new features, macOS Big Sur 11.6.5 and Security Update 2022-003 Catalina each include more than a dozen security patches, among other fixes. Among the updates, there are several that can lead to arbitrary code execution, including:
Speed up frame
- Available for: macOS Big Sur
- Influence: Opening a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code execution
- Description: A memory corruption issue was addressed through improved state management.
- CVE-2022-22633: an anonymous researcher
AppleScript
- Available for: macOS Big Sur, macOS Catalina
- Influence: Processing a maliciously crafted file may lead to arbitrary code execution
- Description: A memory corruption issue was addressed through improved validation.
- CVE-2022-22597: Qi Sun and Robert Ai of Trend Micro
Intel graphics driver
- Available for: macOS Big Sur, macOS Catalina
- Influence: An application can run arbitrary code with kernel privileges
- Description: An issue with typing confusion was addressed through improved state handling.
- CVE-2022-22661: an anonymous researcher, Peterpan0927 of Alibaba Security Pandora Lab
kernel
- Available for: macOS Big Sur, macOS Catalina
- lbattle: An application can run arbitrary code with kernel privileges
- Description: An out-of-bounds write issue was addressed through improved boundary checking.
- CVE-2022-22613: Alex, an anonymous researcher
- Available for: macOS Big Sur, macOS Catalina
- Influence: An application can run arbitrary code with kernel privileges
- Description: A use after free issue was addressed through improved memory management.
- CVE-2022-22615: an anonymous researcher
- CVE-2022-22614: an anonymous researcher
There are also QuickTime Player, Siri and WebKit solutions. We recommend performing the update as soon as possible.
To download the latest update to your Mac, open the System Preferences app and click software updateand Update now†