Description
Multiple issues were addressed with improved logic. This issue is fixed in macOS Big Sur 11.5. A local attacker may be able to execute code on the Apple T2 Security Chip.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9Attack Vector: Local
Complexity: Low
Privileges: Low
User Interaction: None
Scope: Unchanged
Confidentiality: High
Integrity: High
Availability: High
Affected Packages3 packages
🔴Vulnerability Details
3OSVntfs-3g vulnerabilities↗2022-06-07 ▶ GHSAGHSA-w98f-cwfv-c3w3: Multiple issues were addressed with improved logic↗2022-05-24 ▶ CVEListCVE-2021-30784: Multiple issues were addressed with improved logic↗2021-09-08 ▶ 📋Vendor Advisories
3Red Hatntfs-3g: crafted NTFS image can cause heap exhaustion in ntfs_get_attribute_value↗2022-05-26 ▶ MicrosoftA crafted NTFS image can cause heap exhaustion in ntfs_get_attribute_value in NTFS-3G through 2021.8.22.↗2022-05-10 ▶ AppleCVE-2021-30784: Security Update 2021-005 Mojave↗2021-07-21 ▶