CVE-2021-30672
Published May 24, 2021
·Updated
A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-004 Catalina, Security Update 2021-005 Mojave. A malicious application may be able to gain root privileges.
Credit
say2(ENKI), say2(ENKI), say2(ENKI)
Affected Software
35 affected componentsFixes available
Apple macOS Big Sur<11.4
11.4
Apple Catalina
Apple Mojave
Apple iOS and macOS>=10.14<=10.14.5
Apple iOS and macOS>=10.15<=10.15.6
Apple iOS and macOS=10.14.6
Apple iOS and macOS=10.14.6-security_update_2019-001
Apple iOS and macOS=10.14.6-security_update_2019-002
Apple iOS and macOS=10.14.6-security_update_2019-004
Apple iOS and macOS=10.14.6-security_update_2019-005
Apple iOS and macOS=10.14.6-security_update_2019-006
Apple iOS and macOS=10.14.6-security_update_2019-007
Apple iOS and macOS=10.14.6-security_update_2020-001
Apple iOS and macOS=10.14.6-security_update_2020-002
Apple iOS and macOS=10.14.6-security_update_2020-003
Apple iOS and macOS=10.14.6-security_update_2020-004
Apple iOS and macOS=10.14.6-security_update_2020-005
Apple iOS and macOS=10.14.6-security_update_2020-006
Apple iOS and macOS=10.14.6-security_update_2020-007
Apple iOS and macOS=10.14.6-security_update_2021-001
Apple iOS and macOS=10.14.6-security_update_2021-002
Apple iOS and macOS=10.14.6-security_update_2021-003
Apple iOS and macOS=10.14.6-security_update_2021-004
Apple iOS and macOS=10.14.6-supplemental_update
Apple iOS and macOS=10.14.6-supplemental_update_2
Apple iOS and macOS=10.15.7
Apple iOS and macOS=10.15.7-security_update_2020
Apple iOS and macOS=10.15.7-security_update_2020-001
Apple iOS and macOS=10.15.7-security_update_2020-005
Apple iOS and macOS=10.15.7-security_update_2020-007
Apple iOS and macOS=10.15.7-security_update_2021-001
Apple iOS and macOS=10.15.7-security_update_2021-002
Apple iOS and macOS=10.15.7-security_update_2021-003
Apple iOS and macOS=10.15.7-supplemental_update
Apple macOS>=11.0<11.4
Event History
Sep 8, 2021
CVE Published
via MITRE·02:25 PM
Data Sourced
via MITRE·02:25 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-30672.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Bluetooth. A malicious application may be able to gain root privileges.'
3
What is the description of this vulnerability?
The description of this vulnerability is 'Bluetooth. A memory corruption issue was addressed with improved state management.'
4
Which software versions are affected by this vulnerability?
The affected software versions are Apple Mojave, Apple macOS Big Sur (up to exclusive version 11.4), and Apple Catalina.
5
How can I fix this vulnerability?
To fix this vulnerability, update your software to the latest version provided by Apple.