VDB

CVE-2021-1849

CVE-2021-1849 PUBLISHED CVSS 7.5 HIGH

An issue in code signature validation was addressed with improved checks. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. A malicious application may be able to bypass Privacy preferences.

EPSS 0.15% · 36.0th percentile

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.15%
36.0th percentile

Affected Products

VendorProductVersions
appleiphone_os0
appleipados0
AppletvOSunspecified
ApplemacOSunspecified
applemacos11.0
AppleiOS and iPadOSunspecified
applewatchos0
ApplewatchOS*
appletvos0

Timeline

  • Apr 27, 2021 CVE Published
  • Sep 9, 2021 EPSS Score
  • Sep 21, 2021 EPSS Score
  • Nov 6, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Mar 1, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • Apr 28, 2022 EPSS Score
  • Jun 24, 2022 EPSS Score
  • Oct 19, 2022 EPSS Score
  • Dec 16, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›