CVE-2021-30654: Medium severity apple garageband vulnerability
Published Apr 6, 2021
·Updated
GarageBand. This issue was addressed by removing additional entitlements.
Other sources
This issue was addressed by removing additional entitlements. This issue is fixed in GarageBand 10.4.3. A local attacker may be able to read sensitive information.
Credit
Wojciech Reguła@@_r3ggi(SecuRing)
Affected Software
2 affected components
Apple GarageB
Apple GarageBand<10.4.3
Event History
Sep 8, 2021
CVE Published
via MITRE·02:47 PM
Data Sourced
via MITRE·02:47 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-30654?
The severity of CVE-2021-30654 is medium.
2
How was CVE-2021-30654 addressed?
CVE-2021-30654 was addressed by removing additional entitlements.
3
Which version of GarageBand fixes CVE-2021-30654?
GarageBand version 10.4.3 fixes CVE-2021-30654.
4
What can a local attacker potentially do with CVE-2021-30654?
A local attacker may be able to read sensitive information.