A S/MIME issue existed in the handling of encrypted email. This issue was addressed by not automatically loading some MIME parts. This issue is fixed in iOS 15.2 and iPadOS 15.2. An attacker may be able to recover plaintext contents of an S/MIME-encrypted e-mail.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/HT212976 |
Configurations
Configuration 1 (hide)
|
History
31 May 2022, 23:26
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://support.apple.com/en-us/HT212976 - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : 5.0
v3 : 7.5 |
CWE | CWE-312 | |
CPE | cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* |
26 May 2022, 17:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Summary | A S/MIME issue existed in the handling of encrypted email. This issue was addressed by not automatically loading some MIME parts. This issue is fixed in iOS 15.2 and iPadOS 15.2. An attacker may be able to recover plaintext contents of an S/MIME-encrypted e-mail. |
24 Aug 2021, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-08-24 19:15
Updated : 2024-02-04 21:47
NVD link : CVE-2021-30997
Mitre link : CVE-2021-30997
CVE.ORG link : CVE-2021-30997
JSON object : View
Products Affected
apple
- ipados
- iphone_os
CWE
CWE-312
Cleartext Storage of Sensitive Information