Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, watchOS 8, Safari 15, tvOS 15, iOS 15 and iPadOS 15, iTunes 12.12 for Windows. Processing maliciously crafted web content may lead to arbitrary code execution.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 06:04
Type | Values Removed | Values Added |
---|---|---|
References | () http://seclists.org/fulldisclosure/2021/Oct/60 - Mailing List, Third Party Advisory | |
References | () http://seclists.org/fulldisclosure/2021/Oct/61 - Mailing List, Third Party Advisory | |
References | () http://seclists.org/fulldisclosure/2021/Oct/62 - Mailing List, Third Party Advisory | |
References | () http://seclists.org/fulldisclosure/2021/Oct/63 - Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2021/10/26/9 - Mailing List | |
References | () http://www.openwall.com/lists/oss-security/2021/10/27/1 - Mailing List | |
References | () http://www.openwall.com/lists/oss-security/2021/10/27/2 - Mailing List | |
References | () http://www.openwall.com/lists/oss-security/2021/10/27/4 - Mailing List | |
References | () https://support.apple.com/en-us/HT212807 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT212814 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT212815 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT212816 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT212817 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT212819 - Vendor Advisory | |
References | () https://support.apple.com/kb/HT212869 - Vendor Advisory | |
References | () https://support.apple.com/kb/HT212953 - Vendor Advisory |
23 Nov 2021, 20:20
Type | Values Removed | Values Added |
---|---|---|
References | (FULLDISC) http://seclists.org/fulldisclosure/2021/Oct/63 - Mailing List, Third Party Advisory | |
References | (MLIST) http://www.openwall.com/lists/oss-security/2021/10/26/9 - Mailing List | |
References | (FULLDISC) http://seclists.org/fulldisclosure/2021/Oct/62 - Mailing List, Third Party Advisory | |
References | (FULLDISC) http://seclists.org/fulldisclosure/2021/Oct/61 - Mailing List, Third Party Advisory | |
References | (FULLDISC) http://seclists.org/fulldisclosure/2021/Oct/60 - Mailing List, Third Party Advisory | |
References | (MLIST) http://www.openwall.com/lists/oss-security/2021/10/27/4 - Mailing List | |
References | (CONFIRM) https://support.apple.com/kb/HT212869 - Vendor Advisory | |
References | (MLIST) http://www.openwall.com/lists/oss-security/2021/10/27/1 - Mailing List | |
References | (CONFIRM) https://support.apple.com/kb/HT212953 - Vendor Advisory | |
References | (MLIST) http://www.openwall.com/lists/oss-security/2021/10/27/2 - Mailing List | |
CPE | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
19 Nov 2021, 13:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
10 Nov 2021, 20:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
27 Oct 2021, 21:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
27 Oct 2021, 15:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
27 Oct 2021, 06:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
26 Oct 2021, 21:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
25 Oct 2021, 14:19
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:apple:itunes:*:*:*:*:*:windows:*:* cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* |
|
CWE | CWE-787 | |
References | (MISC) https://support.apple.com/en-us/HT212814 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT212816 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT212819 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT212815 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT212807 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT212817 - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : 6.8
v3 : 7.8 |
19 Oct 2021, 14:50
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-10-19 14:15
Updated : 2024-11-21 06:04
NVD link : CVE-2021-30849
Mitre link : CVE-2021-30849
CVE.ORG link : CVE-2021-30849
JSON object : View
Products Affected
apple
- iphone_os
- safari
- watchos
- tvos
- macos
- ipados
- itunes
CWE
CWE-787
Out-of-bounds Write