2024-12-08 03:06:42 +00:00

121 lines
3.6 KiB
JSON

{
"id": "CVE-2021-31002",
"sourceIdentifier": "product-security@apple.com",
"published": "2021-08-24T19:15:24.527",
"lastModified": "2024-11-21T06:05:08.100",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Monterey 12.0.1, macOS Big Sur 11.6.2. A malicious application may be able to execute arbitrary code with system privileges."
},
{
"lang": "es",
"value": "Se ha solucionado una lectura fuera de los l\u00edmites con una validaci\u00f3n de entrada mejorada. Este problema se ha solucionado en macOS Monterey 12.0.1, macOS Big Sur 11.6.2. Una aplicaci\u00f3n maliciosa puede ser capaz de ejecutar c\u00f3digo arbitrario con privilegios del sistema"
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
"baseScore": 7.8,
"baseSeverity": "HIGH",
"attackVector": "LOCAL",
"attackComplexity": "LOW",
"privilegesRequired": "NONE",
"userInteraction": "REQUIRED",
"scope": "UNCHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"availabilityImpact": "HIGH"
},
"exploitabilityScore": 1.8,
"impactScore": 5.9
}
],
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:P",
"baseScore": 6.8,
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "PARTIAL"
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 8.6,
"impactScore": 6.4,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-125"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*",
"versionStartIncluding": "11.6",
"versionEndExcluding": "11.6.2",
"matchCriteriaId": "E638958B-D100-430D-9F08-54AD1DC4C980"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:apple:macos:12.0.0:*:*:*:*:*:*:*",
"matchCriteriaId": "255504D8-BE6E-4378-AB81-C65970EB6408"
}
]
}
]
}
],
"references": [
{
"url": "https://support.apple.com/en-us/HT212869",
"source": "product-security@apple.com"
},
{
"url": "https://support.apple.com/en-us/HT212979",
"source": "product-security@apple.com"
},
{
"url": "https://support.apple.com/en-us/HT212869",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://support.apple.com/en-us/HT212979",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
]
}