A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. A malicious application may be able to gain root privileges.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published: 2021-09-08T14:30:28

Updated: 2024-08-03T22:40:31.948Z

Reserved: 2021-04-13T00:00:00

Link: CVE-2021-30681

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-09-08T15:15:14.307

Modified: 2021-09-20T14:57:42.923

Link: CVE-2021-30681

cve-icon Redhat

No data.