PT-2021-4709 · Apple · Watchos+5

Published

2021-04-26

·

Updated

2023-01-09

·

CVE-2021-1832

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions macOS versions prior to 11.3 macOS Catalina versions prior to Security Update 2021-002 iOS versions prior to 14.5 iPadOS versions prior to 14.5 watchOS versions prior to 7.4 tvOS versions prior to 14.5
Description The issue concerns a problem with file permissions, where copied files may not have the expected permissions. This is related to insufficient access control in the macOS operating system, which could allow an attacker to compromise the integrity of protected information. The issue was addressed with improved permissions logic.
Recommendations For macOS Catalina, apply Security Update 2021-002 to resolve the issue. For macOS Big Sur, update to version 11.3 or later to resolve the issue. For iOS, update to version 14.5 or later to resolve the issue. For iPadOS, update to version 14.5 or later to resolve the issue. For watchOS, update to version 7.4 or later to resolve the issue. For tvOS, update to version 14.5 or later to resolve the issue.

Fix

Incorrect Default Permissions

Weakness Enumeration

Related Identifiers

BDU:2021-05413
CVE-2021-1832

Affected Products

Apple Macos
Ios
Ipados
Macos Catalina
Tvos
Watchos