CVE-2021-1878
published 2021-09-08CVE-2021-1878: An integer overflow was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.3, Security Update 2021-002 Catalina, Security Update…
PriorityP336medium6.5CVSS 3.1
AVNACLPRLUINSUCHINAN
EPSS
1.82%
76.3th percentile
An integer overflow was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.3, Security Update 2021-002 Catalina, Security Update 2021-003 Mojave. An attacker in a privileged network position may be able to leak sensitive user information.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_os_x | — | — |
| apple | mac_os_x | — | — |
| apple | mac_os_x | — | — |
| apple | mac_os_x | 10.14 – 10.14.5 | — |
| apple | mac_os_x | 10.15 – 10.15.5 | — |
| apple | macos | >= 11.0 < 11.3 | 11.3 |
| apple | macos | >= unspecified < 11.3 | 11.3 |
| apple | macos | >= unspecified < 2021 | 2021 |
| apple | macos_big_sur | — | — |
| apple | security_update_2021-002_catalina | — | — |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9h5x-7fqr-xqgx: An integer overflow was addressed with improved input validation
ghsa_unreviewed·2022-05-24
CVE-2021-1878 [MEDIUM] CWE-190 GHSA-9h5x-7fqr-xqgx: An integer overflow was addressed with improved input validation
An integer overflow was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.3, Security Update 2021-002 Catalina, Security Update 2021-003 Mojave. An attacker in a privileged network position may be able to leak sensitive user information.
Apple
CVE-2021-1878: Security Update 2021-002 Catalina
vendor_apple·2021-04-26·CVSS 6.5
CVE-2021-1878 [MEDIUM] CVE-2021-1878: Security Update 2021-002 Catalina
Apple Security Update: About the security content of Security Update 2021-002 Catalina
Product: Security Update 2021-002 Catalina
CVE: CVE-2021-1878
Component: Preferences
Impact: A local user may be able to modify protected parts of the file system
Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
Apple
CVE-2021-1878: macOS Big Sur 11.3
vendor_apple·2021-04-26·CVSS 6.5
CVE-2021-1878 [MEDIUM] CVE-2021-1878: macOS Big Sur 11.3
Apple Security Update: About the security content of macOS Big Sur 11.3
Product: macOS Big Sur
Version: 11.3
CVE: CVE-2021-1878
Component: Sandbox
Impact: A malicious application may be able to access the user's recent contacts
Description: The issue was addressed with improved permissions logic.
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: A deep dive into macOS SMB server
blogs_talos·2021-06-02
Vulnerability Spotlight: A deep dive into macOS SMB server
By Aleksandar Nikolich.
## Executive summary
Cisco Talos recently discovered multiple vulnerabilities in macOS’s implementation of SMB server. An adversary could exploit these vulnerabilities to carry out a variety of malicious actions, including revealing sensitive information on the server, bypassing certain cryptographic checks, causing a denial of service or execute remote code on the targeted server. Cisco Talos worked with Apple to ensure that these issues are resolved and an update is available for affected customers, all in adherence to Cisco’s vulnerability disclosure policy. Users are encouraged to update to the latest macOS version as soon as possible to patch these vulnerabilities.
## Background
SMB is among the most ubiquitous network protocols encountered in enterprise en
Talos
Vulnerability Spotlight: A deep dive into macOS SMB server
blogs_talos·2021-06-02
Vulnerability Spotlight: A deep dive into macOS SMB server
## Vulnerability Spotlight: A deep dive into macOS SMB server
By Aleksandar Nikolich.
## Executive summary
Cisco Talos recently discovered multiple vulnerabilities in macOS’s implementation of SMB server. An adversary could exploit these vulnerabilities to carry out a variety of malicious actions, including revealing sensitive information on the server, bypassing certain cryptographic checks, causing a denial of service or execute remote code on the targeted server. Cisco Talos worked with Apple to ensure that these issues are resolved and an update is available for affected customers, all in adherence to Cisco’s vulnerability disclosure policy. Users are encouraged to update to the latest macOS version as soon as possible to patch these vulnerabilities.
## Background
SMB is among the
Talos
Vulnerability Spotlight: Information disclosure vulnerability in macOS SMB server
blogs_talos·2021-05-19·CVSS 6.5
[MEDIUM] Vulnerability Spotlight: Information disclosure vulnerability in macOS SMB server
## Vulnerability Spotlight: Information disclosure vulnerability in macOS SMB server
Aleksandar Nikolic of Cisco Talos discovered this vulnerability. Blog by Jon Munshaw.
Cisco Talos recently discovered an exploitable integer overflow vulnerability in Apple macOS’ SMB server that could lead to information disclosure.
Server Message Block (SMB) is a network file-sharing commonly seen in Windows network environments, but macOS contains its own proprietary implementation of the server and client components. TALOS-2021-1237 (CVE-2021-1878) is an integer overflow vulnerability that exists in the way macOS SMB server processes SMB3 compounded packets. An attacker could exploit this vulnerability by sending the targeted SMB server a specially crafted packet. In addition to being able to see se
Talos
Vulnerability Spotlight: Information disclosure vulnerability in macOS SMB server
blogs_talos·2021-05-19·CVSS 6.5
CVE-2021-1878 [MEDIUM] Vulnerability Spotlight: Information disclosure vulnerability in macOS SMB server
Aleksandar Nikolic of Cisco Talos discovered this vulnerability. Blog by Jon Munshaw.
Cisco Talos recently discovered an exploitable integer overflow vulnerability in Apple macOS’ SMB server that could lead to information disclosure.
Server Message Block (SMB) is a network file-sharing commonly seen in Windows network environments, but macOS contains its own proprietary implementation of the server and client components. TALOS-2021-1237 (CVE-2021-1878) is an integer overflow vulnerability that exists in the way macOS SMB server processes SMB3 compounded packets. An attacker could exploit this vulnerability by sending the targeted SMB server a specially crafted packet. In addition to being able to see sensitive information, an attacker could also use the integer overflow to bypass cryptog
2021-09-08
Published