First published: Mon May 24 2021(Updated: )
A local attacker may be able to view Now Playing information from the lock screen. This issue is fixed in macOS Big Sur 11.4, iOS 14.6 and iPadOS 14.6. A privacy issue in Now Playing was addressed with improved permissions.
Credit: Ricky D'Amelio Jatayu Holznagel @jholznagel Ricky D'Amelio Jatayu Holznagel @jholznagel product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS Big Sur | <11.4 | 11.4 |
Apple iOS | <14.6 | 14.6 |
Apple iPadOS | <14.6 | 14.6 |
Apple iPadOS | <14.6 | |
Apple iPhone OS | <14.6 | |
Apple macOS | >=11.0<11.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-30756 is a vulnerability that allows a local attacker to view Now Playing information from the lock screen.
CVE-2021-30756 affects macOS Big Sur (version up to 11.4), iOS (version up to 14.6), and iPadOS (version up to 14.6).
A local attacker can exploit CVE-2021-30756 to view Now Playing information from the lock screen on the affected devices.
CVE-2021-30756 is a local vulnerability, which means an attacker needs physical or remote access to the affected device, making it less severe compared to remote exploits.
To fix CVE-2021-30756, make sure to update your macOS Big Sur, iOS, and iPadOS to the latest versions available from Apple.