
Cloud Vulnerability DB
A community-led vulnerabilities database
QuartzCore in macOS Sonoma contained a vulnerability (CVE-2022-23294) that could lead to code execution when processing malicious input. The vulnerability was discovered and reported by Wojciech Regula of SecuRing (SecuRing Blog).
The vulnerability was identified as a code execution issue in the QuartzCore component. The issue was addressed by completely removing the vulnerable code, indicating that the problematic functionality was deemed unnecessary or unsafe for continued use (Apple Support).
When successfully exploited, this vulnerability could allow an attacker to execute arbitrary code through maliciously crafted input processing (Apple Support).
Apple addressed this vulnerability by removing the vulnerable code entirely, as detailed in the macOS Sonoma 14.4 security update (Apple Support).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."