CVE-2021-30783: Race Condition
AMD Kernel. A memory corruption issue was addressed with improved input validation.
Other sources
An access issue was addressed with improved access restrictions. This issue is fixed in macOS Big Sur 11.5, Security Update 2021-004 Catalina, Security Update 2021-005 Mojave. A sandboxed process may be able to circumvent sandbox restrictions.
— MITRE
Analytics. A logic issue was addressed with improved restrictions.
— Apple
App Store. A permissions issue was addressed with improved validation.
— Apple
AppKit. An information disclosure issue was addressed by removing the vulnerable code.
— Apple
Audio. This issue was addressed with improved checks.
— Apple
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2021-30805
- CVE-2021-30871
- CVE-2021-30790
- CVE-2021-31006
- CVE-2021-30781
- CVE-2021-30748
- CVE-2021-30775
- CVE-2021-30776
- CVE-2021-30786
- CVE-2021-30772
- CVE-2021-30783
- CVE-2021-30777
- CVE-2021-30789
- CVE-2021-30774
- CVE-2021-30780
- CVE-2021-30768
- CVE-2021-30817
- CVE-2021-30804
- CVE-2021-30760
- CVE-2021-30788
- CVE-2021-30759
- CVE-2021-30803
- CVE-2021-30779
- CVE-2021-30785
- CVE-2021-30787
- CVE-2021-30766
- CVE-2021-30765
- CVE-2021-30784
- CVE-2021-30793
- CVE-2021-30778
- CVE-2021-30677
- CVE-2021-3518
- CVE-2021-30796
- CVE-2021-30792
- CVE-2021-30791
- CVE-2021-1821
- CVE-2021-30782
- CVE-2021-31004
- CVE-2021-30798
- CVE-2021-30758
- CVE-2021-30795
- CVE-2021-30797
- CVE-2021-30799
- CVE-2021-30860
- CVE-2021-31010
- CVE-2021-30827
- CVE-2021-30828
- CVE-2021-30829
- CVE-2021-22925
- CVE-2021-30832
- CVE-2021-30841
- CVE-2021-30842
- CVE-2021-30843
- CVE-2021-30835
- CVE-2021-30847
- CVE-2021-30830
- CVE-2021-30865
- CVE-2020-29622
- CVE-2021-30857
- CVE-2021-30859
- CVE-2013-0340
- CVE-2021-30855
- CVE-2021-30850
- CVE-2021-30844
- CVE-2021-30713
- CVE-2021-30811
- CVE-2021-30672
- CVE-2021-30733
- CVE-2021-30731
- CVE-2021-30703
Frequently Asked Questions
What is CVE-2021-30783?
CVE-2021-30783 is a vulnerability in CoreServices that allows unauthorized access to LaunchServices.
What is the severity of CVE-2021-30783?
The severity of CVE-2021-30783 has not been disclosed.
How does CVE-2021-30783 affect Apple Mojave?
CVE-2021-30783 affects Apple Mojave by compromising access restriction controls in the LaunchServices component.
Is Apple Catalina affected by CVE-2021-30783?
Yes, Apple Catalina is affected by CVE-2021-30783.
How can I fix CVE-2021-30783?
To fix CVE-2021-30783, update your macOS to the latest version provided by Apple.