Description
A URI parsing issue was addressed with improved parsing. This issue is fixed in Security Update 2021-005 Catalina, macOS Big Sur 11.6. A local user may be able to execute arbitrary files.
References
https://support.apple.com/en-us/HT212804
Release NotesVendor Advisory
https://support.apple.com/en-us/HT212805
Release NotesVendor Advisory
https://support.apple.com/en-us/HT212804
Release NotesVendor Advisory
https://support.apple.com/en-us/HT212805
Release NotesVendor Advisory
CVSS impact metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
7.8 · High
Information
Source identifier
Vulnerability status
Modified
Published
2021-10-19T14:15:08.810Z
4 years agoLast modified
2026-06-17T03:50:57.930Z
3 months ago