CVE-2021-30807

A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.5.1, iOS 14.7.1 and iPadOS 14.7.1, watchOS 7.6.1. An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.
References
Link Resource
https://support.apple.com/en-us/HT212622 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT212623 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT212713 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

08 Aug 2023, 14:21

Type Values Removed Values Added
CWE NVD-CWE-noinfo CWE-787

20 Oct 2021, 14:56

Type Values Removed Values Added
References (MISC) https://support.apple.com/en-us/HT212713 - (MISC) https://support.apple.com/en-us/HT212713 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT212622 - (MISC) https://support.apple.com/en-us/HT212622 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT212623 - (MISC) https://support.apple.com/en-us/HT212623 - Release Notes, Vendor Advisory
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 9.3
v3 : 7.8
CWE NVD-CWE-noinfo

19 Oct 2021, 14:50

Type Values Removed Values Added
New CVE

Information

Published : 2021-10-19 14:15

Updated : 2023-12-10 14:09


NVD link : CVE-2021-30807

Mitre link : CVE-2021-30807

CVE.ORG link : CVE-2021-30807


JSON object : View

Products Affected

apple

  • watchos
  • macos
  • iphone_os
  • ipad_os
CWE
CWE-787

Out-of-bounds Write