CVE-2021-1782

CVE Published 2021-04-02
Related CWE(s) CWE-667: Improper Locking
Related Vendor(s) apple
Related Product(s) mac_os_x, ipados, iphone_os, macos, watchos, tvos
Exploitation Reported (CISA KEV) 2021-11-03
CVSS 3 Base Score 7.0 (HIGH)
CVSS 3 Attack Complexity HIGH
CVSS 3 Attack Vector LOCAL

A race condition was addressed with improved locking. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. A malicious application may be able to elevate privileges. Apple is aware of a report that this issue may have been actively exploited..

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

Associated CAPEC Patterns

References