CVE-2021-30829
published 2021-10-19CVE-2021-30829: A URI parsing issue was addressed with improved parsing. This issue is fixed in Security Update 2021-005 Catalina, macOS Big Sur 11.6. A local user may be able…
PriorityP339high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.27%
19.5th percentile
A URI parsing issue was addressed with improved parsing. This issue is fixed in Security Update 2021-005 Catalina, macOS Big Sur 11.6. A local user may be able to execute arbitrary files.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_os_x | — | — |
| apple | mac_os_x | 10.15 – 10.15.6 | — |
| apple | macos | >= 11.0 < 11.6 | 11.6 |
| apple | macos | >= unspecified < 11.6 | 11.6 |
| apple | macos | >= unspecified < 2021 | 2021 |
| apple | macos_big_sur | — | — |
| apple | security_update_2021-005_catalina | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2021-30829: macOS Big Sur 11.6
vendor_apple·2021-09-13·CVSS 7.8
CVE-2021-30829 [HIGH] CVE-2021-30829: macOS Big Sur 11.6
Apple Security Update: About the security content of macOS Big Sur 11.6
Product: macOS Big Sur
Version: 11.6
CVE: CVE-2021-30829
Component: CUPS
Impact: A local user may be able to execute arbitrary files
Description: A URI parsing issue was addressed with improved parsing.
Apple
CVE-2021-30829: Security Update 2021-005 Catalina
vendor_apple·2021-09-13·CVSS 7.8
CVE-2021-30829 [HIGH] CVE-2021-30829: Security Update 2021-005 Catalina
Apple Security Update: About the security content of Security Update 2021-005 Catalina
Product: Security Update 2021-005 Catalina
CVE: CVE-2021-30829
Component: CUPS
Impact: A local user may be able to execute arbitrary files
Description: A URI parsing issue was addressed with improved parsing.
GHSA
GHSA-mcpr-mf65-6f4w: A URI parsing issue was addressed with improved parsing
ghsa_unreviewed·2022-05-24
CVE-2021-30829 [HIGH] CWE-269 GHSA-mcpr-mf65-6f4w: A URI parsing issue was addressed with improved parsing
A URI parsing issue was addressed with improved parsing. This issue is fixed in Security Update 2021-005 Catalina, macOS Big Sur 11.6. A local user may be able to execute arbitrary files.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-10-19
Published