CVE-2021-30657: medium-severity vulnerability in Apple macOS
Published · Updated
Patch now. It under exploitation confirmed by CISA and has a working public exploit.
Apply updates per vendor instructions.
A flaw in macOS allows a malicious app to bypass Gatekeeper, Apple's security check that prevents untrusted software from running. An attacker could trick your system into running harmful code that Gatekeeper should have blocked.
A logic vulnerability in macOS state management allows a malicious application to circumvent Gatekeeper's code-signing verification. The attack requires local execution context and improves attacker's capability to run unsigned or revoked code; Apple confirmed active exploitation in the wild.
The full analysis of this CVE is available in Portuguese →
In the same product, most dangerous first.