Vulnerabilities > CVE-2021-30912 - Improper Preservation of Permissions vulnerability in Apple mac OS X

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
local
low complexity
apple
CWE-281

Summary

The issue was addressed with improved permissions logic. This issue is fixed in macOS Monterey 12.0.1, Security Update 2021-007 Catalina, macOS Big Sur 11.6.1. A malicious application may gain access to a user's Keychain items.

Vulnerable Configurations

Part Description Count
OS
Apple
212

Common Weakness Enumeration (CWE)