CVE-2021-30706

Processing a maliciously crafted image may lead to disclosure of user information. This issue is fixed in macOS Big Sur 11.4, tvOS 14.6, watchOS 7.5, iOS 14.6 and iPadOS 14.6. This issue was addressed with improved checks.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

17 Sep 2021, 11:39

Type Values Removed Values Added
References (MISC) https://support.apple.com/en-us/HT212533 - (MISC) https://support.apple.com/en-us/HT212533 - Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT212529 - (MISC) https://support.apple.com/en-us/HT212529 - Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT212532 - (MISC) https://support.apple.com/en-us/HT212532 - Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT212528 - (MISC) https://support.apple.com/en-us/HT212528 - Vendor Advisory
CPE cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
CWE CWE-125
CVSS v2 : unknown
v3 : unknown
v2 : 4.3
v3 : 5.5

08 Sep 2021, 15:30

Type Values Removed Values Added
New CVE

Information

Published : 2021-09-08 15:15

Updated : 2024-02-04 22:08


NVD link : CVE-2021-30706

Mitre link : CVE-2021-30706

CVE.ORG link : CVE-2021-30706


JSON object : View

Products Affected

apple

  • iphone_os
  • ipados
  • macos
  • watchos
  • tvos
CWE
CWE-125

Out-of-bounds Read