CVE-2021-1824 Information

Description

This issue was addressed with improved entitlements. This issue is fixed in macOS Big Sur 11.3 Security Update 2021-002 Catalina. A malicious application with root privileges may be able to access private information.

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

Reference

https://support.apple.com/en-us/HT212325 https://support.apple.com/en-us/HT212326

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction Required

HIGH

Scope

NONE

Confidentiality Impact

UNCHANGED

Integrity Impact

HIGH

Availability Impact

NONE

Base Score

NONE

Base Severity

4.4

Share on: