CVE-2021-1740
published 2021-09-08CVE-2021-1740: A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in Security Update 2021-002 Catalina, iOS…
PriorityP424medium5.5CVSS 3.1
AVLACLPRLUINSUCNIHAN
EPSS
1.04%
60.2th percentile
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in Security Update 2021-002 Catalina, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. A local user may be able to modify protected parts of the file system.
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_14.5_and_ipados | — | — |
| apple | ios_and_ipados | >= unspecified < 14.5 | 14.5 |
| apple | ipados | < 14.5 | 14.5 |
| apple | iphone_os | < 14.5 | 14.5 |
| apple | mac_os_x | — | — |
| apple | mac_os_x | — | — |
| apple | mac_os_x | 10.15 – 10.15.5 | — |
| apple | macos | >= 11.0 < 11.3 | 11.3 |
| apple | macos | >= unspecified < 11.3 | 11.3 |
| apple | macos | >= unspecified < 2021 | 2021 |
| apple | macos_big_sur | — | — |
| apple | security_update_2021-002_catalina | — | — |
| apple | tvos | < 14.5 | 14.5 |
| apple | tvos | >= unspecified < 14.5 | 14.5 |
| apple | watchos | < 7.4 | 7.4 |
| apple | watchos | >= unspecified < 7.4 | 7.4 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:P/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2021-1740: Security Update 2021-002 Catalina
vendor_apple·2021-04-26·CVSS 5.5
CVE-2021-1740 [MEDIUM] CVE-2021-1740: Security Update 2021-002 Catalina
Apple Security Update: About the security content of Security Update 2021-002 Catalina
Product: Security Update 2021-002 Catalina
CVE: CVE-2021-1740
Component: Preferences
Impact: A local user may be able to modify protected parts of the file system
Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
Apple
CVE-2021-1740: macOS Big Sur 11.3
vendor_apple·2021-04-26·CVSS 5.5
CVE-2021-1740 [MEDIUM] CVE-2021-1740: macOS Big Sur 11.3
Apple Security Update: About the security content of macOS Big Sur 11.3
Product: macOS Big Sur
Version: 11.3
CVE: CVE-2021-1740
Component: Preferences
Impact: A local user may be able to modify protected parts of the file system
Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
Apple
CVE-2021-1740: iOS 14.5 and iPadOS 14.5
vendor_apple·2021-04-26·CVSS 5.5
CVE-2021-1740 [MEDIUM] CVE-2021-1740: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1740
Component: Preferences
Impact: A local user may be able to modify protected parts of the file system
Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
GHSA
GHSA-9hc5-m4g5-3m3c: A parsing issue in the handling of directory paths was addressed with improved path validation
ghsa_unreviewed·2022-05-24
CVE-2021-1740 [MEDIUM] CWE-22 GHSA-9hc5-m4g5-3m3c: A parsing issue in the handling of directory paths was addressed with improved path validation
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in Security Update 2021-002 Catalina, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. A local user may be able to modify protected parts of the file system.
No detection rules found.
No public exploits indexed.
Trendmicro
Analyzing an Old Bug and Discovering CVE-2021-30995
blogs_trendmicro·2022-01-14·CVSS 5.5
CVE-2021-30995 [MEDIUM] Analyzing an Old Bug and Discovering CVE-2021-30995
Exploits & Vulnerabilities
## Analyzing an Old Bug and Discovering CVE-2021-30995
A vulnerability found in 2021 has been patched and re-patched in the months since it was reported. We analyze the bug and outline the process that led to the discovery of CVE-2021-30995.
By: Mickey Jin Jan 14, 2022 Read time: ( words)
Save to Folio
On April 26, 2021 Apple patched CVE-2021-1740 , which was a vulnerable function inside the system daemon process cfprefsd (these types of processes usually run in the background and handle system tasks). The bug could have been exploited to read arbitrary files, write arbitrary files, and get root privilege escalation. It was addressed in Apple’s Security Update 2021-002 (Catalina) for a variety of Apple operating systems, including iOS and macOS. However, in
Trendmicro
Analyzing an Old Bug and Discovering CVE-2021-30995
blogs_trendmicro·2022-01-14·CVSS 5.5
CVE-2021-30995 [MEDIUM] Analyzing an Old Bug and Discovering CVE-2021-30995
Exploits & Vulnerabilities
## Analyzing an Old Bug and Discovering CVE-2021-30995
A vulnerability found in 2021 has been patched and re-patched in the months since it was reported. We analyze the bug and outline the process that led to the discovery of CVE-2021-30995.
By: Mickey Jin 2022/01/14 Read time: ( words)
Save to Folio
On April 26, 2021 Apple patched CVE-2021-1740 , which was a vulnerable function inside the system daemon process cfprefsd (these types of processes usually run in the background and handle system tasks). The bug could have been exploited to read arbitrary files, write arbitrary files, and get root privilege escalation. It was addressed in Apple’s Security Update 2021-002 (Catalina) for a variety of Apple operating systems, including iOS and macOS. However, in ea
Trendmicro
Analyzing an Old Bug and Discovering CVE-2021-30995
blogs_trendmicro·2022-01-14·CVSS 5.5
CVE-2021-30995 [MEDIUM] Analyzing an Old Bug and Discovering CVE-2021-30995
Sfruttamento vulnerabilità
## Analyzing an Old Bug and Discovering CVE-2021-30995
A vulnerability found in 2021 has been patched and re-patched in the months since it was reported. We analyze the bug and outline the process that led to the discovery of CVE-2021-30995.
By: Mickey Jin Jan 14, 2022 Read time: ( words)
Save to Folio
On April 26, 2021 Apple patched CVE-2021-1740 , which was a vulnerable function inside the system daemon process cfprefsd (these types of processes usually run in the background and handle system tasks). The bug could have been exploited to read arbitrary files, write arbitrary files, and get root privilege escalation. It was addressed in Apple’s Security Update 2021-002 (Catalina) for a variety of Apple operating systems, including iOS and macOS. However, in
Trendmicro
Analyzing an Old Bug and Discovering CVE-2021-30995
blogs_trendmicro·2022-01-14·CVSS 5.5
CVE-2021-30995 [MEDIUM] Analyzing an Old Bug and Discovering CVE-2021-30995
Exploits y vulnerabilidades
## Analyzing an Old Bug and Discovering CVE-2021-30995
A vulnerability found in 2021 has been patched and re-patched in the months since it was reported. We analyze the bug and outline the process that led to the discovery of CVE-2021-30995.
By: Mickey Jin Jan 14, 2022 Read time: ( words)
Save to Folio
On April 26, 2021 Apple patched CVE-2021-1740 , which was a vulnerable function inside the system daemon process cfprefsd (these types of processes usually run in the background and handle system tasks). The bug could have been exploited to read arbitrary files, write arbitrary files, and get root privilege escalation. It was addressed in Apple’s Security Update 2021-002 (Catalina) for a variety of Apple operating systems, including iOS and macOS. However, in
Trendmicro
Analyzing an Old Bug and Discovering CVE-2021-30995
blogs_trendmicro·2022-01-14·CVSS 5.5
CVE-2021-30995 [MEDIUM] Analyzing an Old Bug and Discovering CVE-2021-30995
Exploits & Vulnerabilities
# Analyzing an Old Bug and Discovering CVE-2021-30995
A vulnerability found in 2021 has been patched and re-patched in the months since it was reported. We analyze the bug and outline the process that led to the discovery of CVE-2021-30995.
By: Mickey Jin
2022/01/14
Read time: ( words)
Save to Folio
On April 26, 2021 Apple patched CVE-2021-1740, which was a vulnerable function inside the system daemon process cfprefsd (these types of processes usually run in the background and handle system tasks). The bug could have been exploited to read arbitrary files, write arbitrary files, and get root privilege escalation. It was addressed in Apple’s Security Update 2021-002 (Catalina) for a variety of Apple operating systems, including iOS and macOS. However, in ear
Trendmicro
Analyzing an Old Bug and Discovering CVE-2021-30995
blogs_trendmicro·2022-01-14·CVSS 5.5
CVE-2021-30995 [MEDIUM] Analyzing an Old Bug and Discovering CVE-2021-30995
Ausnutzung von Schwachstellen
## Analyzing an Old Bug and Discovering CVE-2021-30995
A vulnerability found in 2021 has been patched and re-patched in the months since it was reported. We analyze the bug and outline the process that led to the discovery of CVE-2021-30995.
By: Mickey Jin Jan 14, 2022 Read time: ( words)
Save to Folio
On April 26, 2021 Apple patched CVE-2021-1740 , which was a vulnerable function inside the system daemon process cfprefsd (these types of processes usually run in the background and handle system tasks). The bug could have been exploited to read arbitrary files, write arbitrary files, and get root privilege escalation. It was addressed in Apple’s Security Update 2021-002 (Catalina) for a variety of Apple operating systems, including iOS and macOS. However,
Trendmicro
Analyzing an Old Bug and Discovering CVE-2021-30995
blogs_trendmicro·2022-01-14·CVSS 5.5
CVE-2021-30995 [MEDIUM] Analyzing an Old Bug and Discovering CVE-2021-30995
Exploits & Vulnerabilities
# Analyzing an Old Bug and Discovering CVE-2021-30995
A vulnerability found in 2021 has been patched and re-patched in the months since it was reported. We analyze the bug and outline the process that led to the discovery of CVE-2021-30995.
By: Mickey Jin
Jan 14, 2022
Read time: ( words)
Save to Folio
On April 26, 2021 Apple patched CVE-2021-1740, which was a vulnerable function inside the system daemon process cfprefsd (these types of processes usually run in the background and handle system tasks). The bug could have been exploited to read arbitrary files, write arbitrary files, and get root privilege escalation. It was addressed in Apple’s Security Update 2021-002 (Catalina) for a variety of Apple operating systems, including iOS and macOS. However, in e
https://support.apple.com/en-us/HT212317https://support.apple.com/en-us/HT212323https://support.apple.com/en-us/HT212324https://support.apple.com/en-us/HT212325https://support.apple.com/en-us/HT212326https://support.apple.com/en-us/HT212317https://support.apple.com/en-us/HT212323https://support.apple.com/en-us/HT212324https://support.apple.com/en-us/HT212325https://support.apple.com/en-us/HT212326
2021-09-08
Published