A malicious application may be able to execute arbitrary code with kernel privileges. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina, Security Update 2021-004 Mojave. An out-of-bounds write issue was addressed with improved bounds checking.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/houjingyi233/macOS-iOS-system-security
- https://github.com/ret2/Pwn2Own-2021-Safari