Description
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Big Sur 11.0.1. An application may be able to gain elevated privileges.
References (4)
Core 4
Core References
Vendor Advisory x_refsource_misc
https://support.apple.com/en-us/HT211931
Vendor Advisory x_refsource_confirm
https://support.apple.com/kb/HT212011
Mailing List, Third Party Advisory mailing-list
x_refsource_fulldisc
http://seclists.org/fulldisclosure/2020/Dec/32
Mailing List, Third Party Advisory mailing-list
x_refsource_fulldisc
http://seclists.org/fulldisclosure/2020/Dec/26
Scores
CVSS v3
7.8
EPSS
0.0115
EPSS Percentile
63.5%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Details
Status
published
Products (1)
apple/macos
11.0 - 11.0.1
Published
Dec 08, 2020
Tracked Since
Feb 18, 2026