Multiple issues were addressed with improved logic. This issue is fixed in iOS 14.2 and iPadOS 14.2, macOS Big Sur 11.0.1, watchOS 7.1, tvOS 14.2. A sandboxed process may be able to circumvent sandbox restrictions.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/LIJI32/SnatchBox
- https://github.com/developer3000S/PoC-in-GitHub
- https://github.com/hectorgie/PoC-in-GitHub
- https://github.com/houjingyi233/macOS-iOS-system-security
- https://github.com/nomi-sec/PoC-in-GitHub