CVE-2021-30736

A buffer overflow was addressed with improved size validation. This issue is fixed in macOS Big Sur 11.4, tvOS 14.6, watchOS 7.5, iOS 14.6 and iPadOS 14.6. An application may be able to execute arbitrary code with kernel privileges.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

09 Jan 2023, 16:41

Type Values Removed Values Added
First Time Apple ipados
CPE cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*

22 Sep 2021, 14:22

Type Values Removed Values Added
CPE cpe:2.3:o:apple:mac_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

14 Sep 2021, 18:58

Type Values Removed Values Added
CWE CWE-120
CPE cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:mac_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 9.3
v3 : 7.8
References (MISC) https://support.apple.com/en-us/HT212528 - (MISC) https://support.apple.com/en-us/HT212528 - Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT212532 - (MISC) https://support.apple.com/en-us/HT212532 - Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT212533 - (MISC) https://support.apple.com/en-us/HT212533 - Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT212529 - (MISC) https://support.apple.com/en-us/HT212529 - Vendor Advisory

08 Sep 2021, 14:55

Type Values Removed Values Added
New CVE

Information

Published : 2021-09-08 14:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-30736

Mitre link : CVE-2021-30736

CVE.ORG link : CVE-2021-30736


JSON object : View

Products Affected

apple

  • macos
  • tvos
  • watchos
  • iphone_os
  • ipados
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')