Apple macOS Big Sur
cpe:2.3:o:apple:mac_os:*:*:*:*:*:*:*, +1 more
This vulnerability is being actively exploited in the wild.
A memory initialization vulnerability has been identified in the XNU kernel, affecting multiple Apple operating systems, including macOS Big Sur, High Sierra, Mojave, iOS 12.4.9, iOS 14.2, iPadOS 14.2, and watchOS 6.2.9. This vulnerability may allow a malicious application to disclose kernel memory, with reports of an active exploit.
Exploitation of this vulnerability allows for unauthorized disclosure of kernel memory, which could be leveraged for further attacks, such as arbitrary code execution with kernel privileges.
Users can update to macOS Big Sur 11.0.1, watchOS 7.1, iOS 12.4.9, watchOS 6.2.9, Security Update 2020-006 High Sierra, Security Update 2020-006 Mojave, iOS 14.2, iPadOS 14.2, or watchOS 5.3.9. Instructions for updating can be found on the Apple Support website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.