CVE-2022-32931

This issue was addressed with improved data protection. This issue is fixed in macOS Ventura 13. An app with root privileges may be able to access private information.
References
Link Resource
https://support.apple.com/en-us/HT213488 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213488 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

15 May 2025, 15:15

Type Values Removed Values Added
CWE CWE-200
CWE-269

21 Nov 2024, 07:07

Type Values Removed Values Added
References () https://support.apple.com/en-us/HT213488 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213488 - Release Notes, Vendor Advisory

17 Jan 2024, 18:10

Type Values Removed Values Added
CWE NVD-CWE-noinfo
First Time Apple
Apple macos
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://support.apple.com/en-us/HT213488 - () https://support.apple.com/en-us/HT213488 - Release Notes, Vendor Advisory

11 Jan 2024, 13:57

Type Values Removed Values Added
Summary
  • (es) Este problema se solucionó mejorando la protección de datos. Este problema se solucionó en macOS Ventura 13. Una aplicación con privilegios de root puede acceder a información privada.

10 Jan 2024, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-10 22:15

Updated : 2025-05-15 15:15


NVD link : CVE-2022-32931

Mitre link : CVE-2022-32931

CVE.ORG link : CVE-2022-32931


JSON object : View

Products Affected

apple

  • macos
CWE
NVD-CWE-noinfo CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

CWE-269

Improper Privilege Management