July 27, 2021
Summary
A software update was released fixing a local privilege escalation vulnerability affecting MacOS, iPadOS, and iOS. A proof of concept exploit has been publicly released and Apple reports this vulnerability is currently being exploited.
Impact
A vulnerability in the IOMobileFrameBuffer component can be used to run arbitrary code with kernel privileges.
Vulnerable
-
MacOS Big Sur 11.5
-
iPadOS 14.7
-
iOS 14.7
Recommendations
-
Upgrade to the latest version of your operating system immediately. (MacOS Big Sur 11.5.1, iPadOS 14.7.1, or iOS 14.7.1)