CVE-2022-32798
published 2022-09-23CVE-2022-32798: An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.5. An app may be able to gain elevated…
PriorityP339high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
1.57%
72.9th percentile
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.5. An app may be able to gain elevated privileges.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | macos | >= 12.0 < 12.5 | 12.5 |
| apple | macos | >= unspecified < 12.5 | 12.5 |
| apple | macos_monterey | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
ghsa9.6CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-qv87-xvw7-xfrc: An out-of-bounds write issue was addressed with improved input validation
ghsa_unreviewed·2022-09-25
CVE-2022-32798 [HIGH] CWE-787 GHSA-qv87-xvw7-xfrc: An out-of-bounds write issue was addressed with improved input validation
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.5. An app may be able to gain elevated privileges.
GHSA
Jupyter server Token bruteforcing
ghsa·2022-06-16·CVSS 9.6
CVE-2022-29241 [CRITICAL] Jupyter server Token bruteforcing
Jupyter server Token bruteforcing
Affects: Notebook and Lab between 6.4.0?(potentially earlier) and 6.4.11 (currently latest). Jupyter Server <=1.16.0. If I am correct about the responsible code it will affect Jupyter-Server 1.17.0 and 2.0.0a0 as well.
Description: If notebook server is started with a value of `root_dir` that contains the starting user's home directory, then the underlying REST API can be used to leak the access token assigned at start time by guessing/brute forcing the PID of the jupyter server. While this requires an authenticated user session, this url can be used from an xss payload (as in CVE-2021-32798) or from a hooked or otherwise compromised browser to leak this access token to a malicious third party. This token can be used along with the REST API to interact wi
Apple
CVE-2022-32798: macOS Monterey 12.5
vendor_apple·2022-07-20·CVSS 7.8
CVE-2022-32798 [HIGH] CVE-2022-32798: macOS Monterey 12.5
Apple Security Update: About the security content of macOS Monterey 12.5
Product: macOS Monterey
Version: 12.5
CVE: CVE-2022-32798
Component: SMB
Impact: An app may be able to gain elevated privileges
Description: An out-of-bounds write issue was addressed with improved input validation.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-09-23
Published