CVE-2022-22587: Apple iOS and macOS
EPSS11.6%No. 1242 of 1739 in KEV
CVE year2022listed the same year
Same vendor in KEV95
Same product4
| Field | Value |
|---|---|
| Vendor | Apple |
| Product | iOS and macOS |
| Name | Apple Memory Corruption Vulnerability |
| Added to KEV | 2022-01-28 |
| US federal due date | 2022-02-11 |
| Ransomware use | Unknown |
| CWE | CWE-20, CWE-787 |
CISA description
Apple IOMobileFrameBuffer contains a memory corruption vulnerability which can allow a malicious application to execute arbitrary code with kernel privileges.
Other entries for this product
| CVE | Vendor / product | Added | EPSS | Ransomware |
|---|---|---|---|---|
| CVE-2022-32894 | Apple iOS and macOS | 2022-08-18 | 3.2% | Unknown |
| CVE-2022-32893 | Apple iOS and macOS | 2022-08-18 | 9.9% | Unknown |
| CVE-2019-6223 | Apple iOS and macOS | 2021-11-03 | 2.6% | Unknown |
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page
A Apple iOS and macOS vulnerability added to CISA's Known Exploited Vulnerabilities catalog on 2022-01-28.