CVE-2021-30832: Apple macOS CVMServer Use-After-Free Privilege Escalation Vulnerability
A memory corruption issue was addressed with improved state management. This issue is fixed in Security Update 2021-005 Catalina, macOS Big Sur 11.6. A local attacker may be able to elevate their privileges.
Other sources
CVMS. A memory corruption issue was addressed with improved state management.
This vulnerability allows local attackers to escalate privileges on affected installations of Apple macOS. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the CVMServer daemon. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of root.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2021-30811
- CVE-2021-30838
- CVE-2021-30834
- CVE-2021-30928
- CVE-2021-30860
- CVE-2021-31010
- CVE-2021-30827
- CVE-2021-30828
- CVE-2021-30829
- CVE-2021-22925
- CVE-2021-30832
- CVE-2021-30841
- CVE-2021-30842
- CVE-2021-30843
- CVE-2021-30853
- CVE-2021-30933
- CVE-2021-30835
- CVE-2021-30847
- CVE-2021-30830
- CVE-2021-30865
- CVE-2021-30857
- CVE-2021-30859
- CVE-2021-30864
- CVE-2013-0340
- CVE-2021-30813
- CVE-2021-30819
- CVE-2021-30855
- CVE-2021-30925
- CVE-2021-30850
- CVE-2021-30845
- CVE-2021-30844
- CVE-2021-30858
- CVE-2021-30783
- CVE-2020-29622
- CVE-2021-30713
Frequently Asked Questions
What is CVE-2021-30832?
CVE-2021-30832 is a memory corruption issue that was addressed with improved state management.
What software is affected by CVE-2021-30832?
macOS Big Sur version 11.6 and Catalina are affected by CVE-2021-30832.
How does CVE-2021-30832 affect macOS Big Sur?
CVE-2021-30832 affects macOS Big Sur version 11.6.
How does CVE-2021-30832 affect Catalina?
CVE-2021-30832 affects Catalina.
How can I fix CVE-2021-30832?
To fix CVE-2021-30832, ensure that you update macOS Big Sur to version 11.6 or later.