This issue was addressed by removing additional entitlements. This issue is fixed in GarageBand 10.4.3. A local attacker may be able to read sensitive information.
References
Link Resource
https://support.apple.com/en-us/HT212299 Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: apple

Published: 2021-09-08T14:47:18

Updated: 2021-09-08T14:47:18

Reserved: 2021-04-13T00:00:00


Link: CVE-2021-30654

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-09-08T15:15:12.937

Modified: 2021-09-17T16:33:57.803


Link: CVE-2021-30654

JSON object: View

cve-icon Redhat Information

No data.