A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.6, watchOS 8, tvOS 15, iOS 14.8 and iPadOS 14.8, iOS 15 and iPadOS 15. Processing a maliciously crafted image may lead to arbitrary code execution.
References
Configurations
History
21 Nov 2024, 06:04
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.apple.com/en-us/HT212804 - | |
References | () https://support.apple.com/en-us/HT212807 - | |
References | () https://support.apple.com/en-us/HT212814 - | |
References | () https://support.apple.com/en-us/HT212815 - | |
References | () https://support.apple.com/en-us/HT212819 - | |
References | () https://support.apple.com/kb/HT212953 - |
11 Oct 2022, 20:29
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:apple:icloud:13.0:*:*:*:*:windows:*:* | |
References | (CONFIRM) https://support.apple.com/kb/HT212953 - Vendor Advisory |
26 May 2022, 03:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
24 Mar 2022, 19:31
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 6.8
v3 : 7.8 |
CWE | CWE-787 | |
CPE | cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* |
|
References | (MISC) https://support.apple.com/en-us/HT212804 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT212819 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT212807 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT212815 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT212814 - Vendor Advisory |
23 Mar 2022, 20:15
Type | Values Removed | Values Added |
---|---|---|
Summary | A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.6, watchOS 8, tvOS 15, iOS 14.8 and iPadOS 14.8, iOS 15 and iPadOS 15. Processing a maliciously crafted image may lead to arbitrary code execution. | |
References |
|
24 Aug 2021, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-08-24 19:15
Updated : 2024-11-21 06:04
NVD link : CVE-2021-30928
Mitre link : CVE-2021-30928
CVE.ORG link : CVE-2021-30928
JSON object : View
Products Affected
apple
- iphone_os
- watchos
- tvos
- macos
- ipados
- icloud
CWE
CWE-787
Out-of-bounds Write