CVE-2021-30655
published 2021-09-08CVE-2021-30655: An application may be able to execute arbitrary code with system privileges. This issue is fixed in macOS Big Sur 11.3, Security Update 2021-002 Catalina. The…
PriorityP350critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
2.29%
81.4th percentile
An application may be able to execute arbitrary code with system privileges. This issue is fixed in macOS Big Sur 11.3, Security Update 2021-002 Catalina. The issue was addressed with improved permissions logic.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_os_x | — | — |
| apple | mac_os_x | — | — |
| apple | mac_os_x | 10.15 – 10.15.5 | — |
| apple | macos | >= 11.0 < 11.3 | 11.3 |
| apple | macos | >= unspecified < 11.3 | 11.3 |
| apple | macos | >= unspecified < 2021 | 2021 |
| apple | macos_big_sur | — | — |
| apple | security_update_2021-002_catalina | — | — |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2021-30655: Security Update 2021-002 Catalina
vendor_apple·2021-04-26·CVSS 9.8
CVE-2021-30655 [CRITICAL] CVE-2021-30655: Security Update 2021-002 Catalina
Apple Security Update: About the security content of Security Update 2021-002 Catalina
Product: Security Update 2021-002 Catalina
CVE: CVE-2021-30655
Component: Wi-Fi
Impact: The issue was addressed with improved permissions logic
Description: An application may be able to execute arbitrary code with system privileges.
Apple
CVE-2021-30655: macOS Big Sur 11.3
vendor_apple·2021-04-26·CVSS 9.8
CVE-2021-30655 [CRITICAL] CVE-2021-30655: macOS Big Sur 11.3
Apple Security Update: About the security content of macOS Big Sur 11.3
Product: macOS Big Sur
Version: 11.3
CVE: CVE-2021-30655
Component: Wi-Fi
Impact: An application may be able to execute arbitrary code with system privileges
Description: The issue was addressed with improved permissions logic.
GHSA
GHSA-4wxr-8w46-674r: An application may be able to execute arbitrary code with system privileges
ghsa_unreviewed·2022-05-24
CVE-2021-30655 [CRITICAL] GHSA-4wxr-8w46-674r: An application may be able to execute arbitrary code with system privileges
An application may be able to execute arbitrary code with system privileges. This issue is fixed in macOS Big Sur 11.3, Security Update 2021-002 Catalina. The issue was addressed with improved permissions logic.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-09-08
Published