CVE-2021-30748

A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 14.7, macOS Big Sur 11.5. An application may be able to execute arbitrary code with kernel privileges.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*

History

21 Nov 2024, 06:04

Type Values Removed Values Added
References () https://support.apple.com/en-us/HT212601 - Vendor Advisory () https://support.apple.com/en-us/HT212601 - Vendor Advisory
References () https://support.apple.com/en-us/HT212602 - Vendor Advisory () https://support.apple.com/en-us/HT212602 - Vendor Advisory
References () https://support.apple.com/kb/HT212604 - Vendor Advisory () https://support.apple.com/kb/HT212604 - Vendor Advisory

11 Feb 2022, 14:59

Type Values Removed Values Added
CPE cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
References (CONFIRM) https://support.apple.com/kb/HT212604 - (CONFIRM) https://support.apple.com/kb/HT212604 - Vendor Advisory

20 Jan 2022, 21:15

Type Values Removed Values Added
References
  • (CONFIRM) https://support.apple.com/kb/HT212604 -

22 Sep 2021, 14:22

Type Values Removed Values Added
CPE cpe:2.3:o:apple:mac_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

15 Sep 2021, 16:20

Type Values Removed Values Added
CPE cpe:2.3:o:apple:mac_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
CWE CWE-787
CVSS v2 : unknown
v3 : unknown
v2 : 9.3
v3 : 7.8
References (MISC) https://support.apple.com/en-us/HT212601 - (MISC) https://support.apple.com/en-us/HT212601 - Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT212602 - (MISC) https://support.apple.com/en-us/HT212602 - Vendor Advisory

08 Sep 2021, 14:55

Type Values Removed Values Added
New CVE

Information

Published : 2021-09-08 14:15

Updated : 2024-11-21 06:04


NVD link : CVE-2021-30748

Mitre link : CVE-2021-30748

CVE.ORG link : CVE-2021-30748


JSON object : View

Products Affected

apple

  • ipados
  • iphone_os
  • macos
  • tvos
CWE
CWE-787

Out-of-bounds Write