#VU60033 Buffer overflow in Apple iOS and iPadOS - CVE-2022-22587
Published: January 26, 2022
Apple iOS
iPadOS
Apple Inc.
Description
The vulnerability allows a malicious application to execute arbitrary code with elevated privileges.
The vulnerability exists due to a boundary error within the IOMobileFrameBuffer subsystem. A malicious application can trigger buffer overflow and execute arbitrary code with kernel privileges.
Note, the vulnerability is being actively exploited in the wild.