PT-2021-19011 · Apple · Tvos+7
Csaba Fitzl
+1
·
Published
2021-08-24
·
Updated
2022-01-04
·
CVE-2021-30968
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
macOS versions prior to 11.6.2
tvOS versions prior to 15.2
macOS Monterey versions prior to 12.1
macOS Catalina versions prior to Security Update 2021-008
iOS versions prior to 15.2
iPadOS versions prior to 15.2
watchOS versions prior to 8.3
Description
A validation issue related to hard link behavior was addressed with improved sandbox restrictions. This issue may allow a malicious application to bypass certain Privacy preferences.
Recommendations
For macOS Big Sur, update to version 11.6.2.
For tvOS, update to version 15.2.
For macOS Monterey, update to version 12.1.
For macOS Catalina, apply Security Update 2021-008.
For iOS, update to version 15.2.
For iPadOS, update to version 15.2.
For watchOS, update to version 8.3.
Fix
Link Following
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apple Macos
Ios
Ipados
Macos Big Sur
Macos Catalina
Macos Monterey
Tvos
Watchos