{ "data_type": "CVE", "data_format": "MITRE", "data_version": "4.0", "CVE_data_meta": { "ID": "CVE-2022-26704", "ASSIGNER": "product-security@apple.com", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "vendor_name": "Apple", "product": { "product_data": [ { "product_name": "macOS", "version": { "version_data": [ { "version_affected": "<", "version_value": "12.4" } ] } } ] } } ] } }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "An app may be able to gain elevated privileges" } ] } ] }, "references": { "reference_data": [ { "refsource": "MISC", "url": "https://support.apple.com/en-us/HT213257", "name": "https://support.apple.com/en-us/HT213257" }, { "refsource": "CONFIRM", "name": "https://support.apple.com/kb/HT213343", "url": "https://support.apple.com/kb/HT213343" }, { "refsource": "CONFIRM", "name": "https://support.apple.com/kb/HT213344", "url": "https://support.apple.com/kb/HT213344" }, { "refsource": "FULLDISC", "name": "20220721 APPLE-SA-2022-07-20-4 Security Update 2022-005 Catalina", "url": "http://seclists.org/fulldisclosure/2022/Jul/14" }, { "refsource": "FULLDISC", "name": "20220721 APPLE-SA-2022-07-20-3 macOS Big Sur 11.6.8", "url": "http://seclists.org/fulldisclosure/2022/Jul/13" }, { "refsource": "MISC", "name": "https://github.com/mandiant/Vulnerability-Disclosures/blob/master/2022/MNDT-2022-0032/MNDT-2022-0032.md", "url": "https://github.com/mandiant/Vulnerability-Disclosures/blob/master/2022/MNDT-2022-0032/MNDT-2022-0032.md" } ] }, "description": { "description_data": [ { "lang": "eng", "value": "A validation issue existed in the handling of symlinks and was addressed with improved validation of symlinks. This issue is fixed in macOS Monterey 12.4. An app may be able to gain elevated privileges." } ] } }