Description
A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. A malicious application may be able to gain root privileges.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-17598 | A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. A malicious application may be able to gain root privileges. |
References
History
No history.
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2024-08-03T22:40:31.948Z
Reserved: 2021-04-13T00:00:00.000Z
Link: CVE-2021-30681
No data.
Status : Modified
Published: 2021-09-08T15:15:14.307
Modified: 2024-11-21T06:04:25.820
Link: CVE-2021-30681
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD