#VU55206 Out-of-bounds write in macOS - CVE-2021-30787
Published: July 22, 2021 / Updated: August 6, 2021
macOS
Apple Inc.
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a boundary error in Intel Graphics Driver in process_token_BindQueryStoreRegisterToMemoryList within the AppleIntelKBLGraphics kext. A local user can run a specially crafted program to trigger an out-of-bounds write and cause unexpected system termination or write kernel memory.