PT-2021-8247 · Apple · Macos Monterey+2
Jonathan Bar Or
·
Published
2021-08-24
·
Updated
2025-07-30
·
CVE-2021-30970
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
macOS versions prior to 12.1
macOS Big Sur versions prior to 11.6.2
Description
A logic issue was addressed with improved state management, allowing a malicious application to bypass Privacy preferences. This issue may lead to data leakage. A malicious actor may be able to gain access to user data by exploiting this issue, potentially allowing them to listen to the microphone, take screenshots, and gain full access to the device.
Recommendations
For macOS versions prior to 12.1, update to macOS Monterey 12.1 or later.
For macOS Big Sur versions prior to 11.6.2, update to macOS Big Sur 11.6.2 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apple Macos
Macos Big Sur
Macos Monterey