PT-2021-19011 · Apple · Tvos+7

Csaba Fitzl

+1

·

Published

2021-08-24

·

Updated

2022-01-04

·

CVE-2021-30968

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions macOS versions prior to 11.6.2 tvOS versions prior to 15.2 macOS Monterey versions prior to 12.1 macOS Catalina versions prior to Security Update 2021-008 iOS versions prior to 15.2 iPadOS versions prior to 15.2 watchOS versions prior to 8.3
Description A validation issue related to hard link behavior was addressed with improved sandbox restrictions. This issue may allow a malicious application to bypass certain Privacy preferences.
Recommendations For macOS Big Sur, update to version 11.6.2. For tvOS, update to version 15.2. For macOS Monterey, update to version 12.1. For macOS Catalina, apply Security Update 2021-008. For iOS, update to version 15.2. For iPadOS, update to version 15.2. For watchOS, update to version 8.3.

Fix

Link Following

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-30968

Affected Products

Apple Macos
Ios
Ipados
Macos Big Sur
Macos Catalina
Macos Monterey
Tvos
Watchos