Lucene search

K
cvelistAppleCVELIST:CVE-2021-30975
HistoryAug 24, 2021 - 6:51 p.m.

CVE-2021-30975

2021-08-2418:51:14
apple
www.cve.org
5
cve-2021-30975
macos monterey
security update
catalina
macos big sur
gatekeeper
sandbox restrictions

AI Score

8.2

Confidence

High

EPSS

0.002

Percentile

52.0%

This issue was addressed by disabling execution of JavaScript when viewing a scripting dictionary. This issue is fixed in macOS Monterey 12.1, Security Update 2021-008 Catalina, macOS Big Sur 11.6.2. A malicious OSAX scripting addition may bypass Gatekeeper checks and circumvent sandbox restrictions.

CNA Affected

[
  {
    "product": "macOS",
    "vendor": "Apple",
    "versions": [
      {
        "lessThan": "12.1",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  },
  {
    "product": "macOS",
    "vendor": "Apple",
    "versions": [
      {
        "lessThan": "11.6",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  },
  {
    "product": "macOS",
    "vendor": "Apple",
    "versions": [
      {
        "lessThan": "2021",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]

AI Score

8.2

Confidence

High

EPSS

0.002

Percentile

52.0%

Related for CVELIST:CVE-2021-30975