SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2021-30757

Entitlements and privacy permissions granted to this app may be used by a malicious app.

MEDIUM 5.5EPSS 0.82%

Does this matter?

Lower severity and a low EPSS score (0.82%). Track it; it rarely justifies an emergency change on its own.

Description

This issue was addressed by enabling hardened runtime. This issue is fixed in iMovie 10.2.4. Entitlements and privacy permissions granted to this app may be used by a malicious app.

CVSS 3.1
5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
EPSS
0.82% probability · 55th percentile
CISA KEV
Not listed
Affected
apple/imovie
Source
product-security@apple.com

References

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.