Junglewise Threat Intelligence

CVE-2021-30657: Apple macOS Unspecified Vulnerability

CVE-2021-30657 · Severity: critical · CVSS 5.5 · Exploited in the wild · Published 2021-11-03

Technologies: Apple macOS. Vendors: Apple.

Executive brief

A logic issue in macOS System Preferences allows a malicious application to bypass Gatekeeper security checks. This vulnerability was addressed through improved state management in macOS Big Sur 11.3 and Security Update 2021-002 Catalina.

Affected products

  • Apple macOS Big Sur versions before 11.3
  • Apple macOS Catalina versions before Security Update 2021-002

Timeline

  • 2021-09-08: disclosed: NVD Published Date
  • 2021-11-03: kev added: Date added to CISA Known Exploited Vulnerabilities Catalog
  • 2021-11-03: advisory: Published date provided in advisory title
  • 2021-04-26: patched: Fixed in macOS Big Sur 11.3 and Security Update 2021-002 Catalina
  • exploited: Apple is aware of reports that this issue may have been actively exploited.

Related threats