Rewterz Threat Alert – Evilnum APT – Active IOCs
July 13, 2021Rewterz Threat Advisory – CVE-2021-32463 – Trend Micro Apex One DoS Vulnerability
July 13, 2021Rewterz Threat Alert – Evilnum APT – Active IOCs
July 13, 2021Rewterz Threat Advisory – CVE-2021-32463 – Trend Micro Apex One DoS Vulnerability
July 13, 2021Severity
High
Analysis Summary
CVE-2021-30701
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Apple macOS. Interaction with the vImage library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the vImage framework. Crafted data in a PICT file can trigger a write past the end of an allocated data structure. An attacker can leverage this vulnerability to execute code in the context of the current process.
CVE-2021-30746
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Apple macOS. Interaction with the ModelIO library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the ModelIO framework. Crafted data in a USD file can trigger a read past the end of an allocated data structure. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process.
CVE-2021-30734
This vulnerability allows local attackers to escalate privileges on affected installations of Apple macOS. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the AppleIntelKBLGraphics kext. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated data structure. An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the kernel.
Impact
- Code Execution
- Privilege escalation
Affected Vendors
Apple
Affected Products
- macOS
Remediation
Apple has issued an update to correct this vulnerability. More details can be found at