VulnerabilityModified
CVE-2021-30757
Entitlements and privacy permissions granted to this app may be used by a malicious app.
MEDIUM 5.5EPSS 0.82%
Does this matter?
Lower severity and a low EPSS score (0.82%). Track it; it rarely justifies an emergency change on its own.
Description
This issue was addressed by enabling hardened runtime. This issue is fixed in iMovie 10.2.4. Entitlements and privacy permissions granted to this app may be used by a malicious app.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
- EPSS
- 0.82% probability · 55th percentile
- CISA KEV
- Not listed
- Affected
- apple/imovie
- Source
- product-security@apple.com
References
- https://support.apple.com/en-us/HT212549Release Notes, Vendor Advisory
- https://support.apple.com/en-us/HT212549Release Notes, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.