CVE-2021-30913
published 2021-08-24CVE-2021-30913: The issue was addressed with improved permissions logic. This issue is fixed in macOS Monterey 12.0.1, macOS Big Sur 11.6.1. An unprivileged application may be…
PriorityP423medium5.5CVSS 3.1
AVLACLPRNUIRSUCNIHAN
EPSS
1.59%
73.1th percentile
The issue was addressed with improved permissions logic. This issue is fixed in macOS Monterey 12.0.1, macOS Big Sur 11.6.1. An unprivileged application may be able to edit NVRAM variables.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_os_x | — | — |
| apple | mac_os_x | >= 10.15 < 10.15.7 | 10.15.7 |
| apple | macos | — | — |
| apple | macos | >= 11.0 < 11.6.1 | 11.6.1 |
| apple | macos | >= unspecified < 12.0 | 12.0 |
| apple | macos | >= unspecified < 11.6 | 11.6 |
| apple | macos_big_sur | — | — |
| apple | macos_monterey | — | — |
| apple | security_update_2021-007_catalina | — | — |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2021-30913: Security Update 2021-007 Catalina
vendor_apple·2021-10-25·CVSS 5.5
CVE-2021-30913 [MEDIUM] CVE-2021-30913: Security Update 2021-007 Catalina
Apple Security Update: About the security content of Security Update 2021-007 Catalina
Product: Security Update 2021-007 Catalina
CVE: CVE-2021-30913
Component: SoftwareUpdate
Impact: An unprivileged application may be able to edit NVRAM variables
Description: A logic issue was addressed with improved restrictions.
Apple
CVE-2021-30913: macOS Monterey 12.0.1
vendor_apple·2021-10-25·CVSS 5.5
CVE-2021-30913 [MEDIUM] CVE-2021-30913: macOS Monterey 12.0.1
Apple Security Update: About the security content of macOS Monterey 12.0.1
Product: macOS Monterey
Version: 12.0.1
CVE: CVE-2021-30913
Component: SoftwareUpdate
Impact: An unprivileged application may be able to edit NVRAM variables
Description: A logic issue was addressed with improved restrictions.
Apple
CVE-2021-30913: macOS Big Sur 11.6.1
vendor_apple·2021-10-25·CVSS 5.5
CVE-2021-30913 [MEDIUM] CVE-2021-30913: macOS Big Sur 11.6.1
Apple Security Update: About the security content of macOS Big Sur 11.6.1
Product: macOS Big Sur
Version: 11.6.1
CVE: CVE-2021-30913
Component: SoftwareUpdate
Impact: An unprivileged application may be able to edit NVRAM variables
Description: A logic issue was addressed with improved restrictions.
No detection rules found.
No public exploits indexed.
Trendmicro
MacOS SUHelper Root Privilege Escalation Vulnerability A Deep Dive Into CVE-2022-22639
blogs_trendmicro·2022-04-04·CVSS 7.8
CVE-2022-22639 [HIGH] MacOS SUHelper Root Privilege Escalation Vulnerability A Deep Dive Into CVE-2022-22639
## MacOS SUHelper Root Privilege Escalation Vulnerability: A Deep Dive Into CVE-2022-22639
We discovered a now-patched vulnerability in macOS SUHelper, designated as CVE-2022-22639. If exploited, the vulnerability could allow malicious actors to gain root privilege escalation.
By: Mickey Jin Apr 04, 2022 Read time: ( words)
Save to Folio
We discovered a vulnerability in suhelperd, a helper daemon process for Software Update in macOS. A class inside suhelperd, SUHelper, provides an essential system service through the inter-process communication (IPC) mechanism. The process runs as root and is signed with special entitlements, such as com.apple.rootless.install, which grants the process permission to bypass System Integrity Protection (SIP) restrictions. This combination of functionalit
Trendmicro
MacOS SUHelper Root Privilege Escalation Vulnerability A Deep Dive Into CVE-2022-22639
blogs_trendmicro·2022-04-04·CVSS 7.8
CVE-2022-22639 [HIGH] MacOS SUHelper Root Privilege Escalation Vulnerability A Deep Dive Into CVE-2022-22639
# MacOS SUHelper Root Privilege Escalation Vulnerability: A Deep Dive Into CVE-2022-22639
We discovered a now-patched vulnerability in macOS SUHelper, designated as CVE-2022-22639. If exploited, the vulnerability could allow malicious actors to gain root privilege escalation.
By: Mickey Jin
Apr 04, 2022
Read time: ( words)
Save to Folio
We discovered a vulnerability in suhelperd, a helper daemon process for Software Update in macOS. A class inside suhelperd, SUHelper, provides an essential system service through the inter-process communication (IPC) mechanism. The process runs as root and is signed with special entitlements, such as com.apple.rootless.install, which grants the process permission to bypass System Integrity Protection (SIP) restrictions. This combination of functionalit
Trendmicro
MacOS SUHelper Root Privilege Escalation Vulnerability A Deep Dive Into CVE-2022-22639
blogs_trendmicro·2022-04-04·CVSS 7.8
CVE-2022-22639 [HIGH] MacOS SUHelper Root Privilege Escalation Vulnerability A Deep Dive Into CVE-2022-22639
## MacOS SUHelper Root Privilege Escalation Vulnerability: A Deep Dive Into CVE-2022-22639
We discovered a now-patched vulnerability in macOS SUHelper, designated as CVE-2022-22639. If exploited, the vulnerability could allow malicious actors to gain root privilege escalation.
By: Mickey Jin 2022/04/04 Read time: ( words)
Save to Folio
We discovered a vulnerability in suhelperd, a helper daemon process for Software Update in macOS. A class inside suhelperd, SUHelper, provides an essential system service through the inter-process communication (IPC) mechanism. The process runs as root and is signed with special entitlements, such as com.apple.rootless.install, which grants the process permission to bypass System Integrity Protection (SIP) restrictions. This combination of functionalitie
Trendmicro
MacOS SUHelper Root Privilege Escalation Vulnerability A Deep Dive Into CVE-2022-22639
blogs_trendmicro·2022-04-04·CVSS 7.8
CVE-2022-22639 [HIGH] MacOS SUHelper Root Privilege Escalation Vulnerability A Deep Dive Into CVE-2022-22639
# MacOS SUHelper Root Privilege Escalation Vulnerability: A Deep Dive Into CVE-2022-22639
We discovered a now-patched vulnerability in macOS SUHelper, designated as CVE-2022-22639. If exploited, the vulnerability could allow malicious actors to gain root privilege escalation.
By: Mickey Jin
2022/04/04
Read time: ( words)
Save to Folio
We discovered a vulnerability in suhelperd, a helper daemon process for Software Update in macOS. A class inside suhelperd, SUHelper, provides an essential system service through the inter-process communication (IPC) mechanism. The process runs as root and is signed with special entitlements, such as com.apple.rootless.install, which grants the process permission to bypass System Integrity Protection (SIP) restrictions. This combination of functionalitie
2021-08-24
Published