|
971
|
2.4
2.1
|
LOW
Physics
|
An issue existed with authenticating the action triggered by an NFC tag. The issue was addressed with improved action authentication. This issue is fixed in iOS 14.5 and iPadOS 14.5. A person with ph…
|
CWE-287
Improper Authentication
|
CVE-2021-1863
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
972
|
2.4
2.1
|
LOW
Physics
|
Description: A person with physical access may be able to access contacts. This issue is fixed in iOS 14.5 and iPadOS 14.5. Impact: An issue with Siri search access to information was addressed with …
|
NVD-CWE-noinfo
|
CVE-2021-1862
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
973
|
6.5
7.1
|
MEDIUM
Network
|
A memory initialization issue was addressed with improved memory handling. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS…
|
CWE-665
Improper Initialization
|
CVE-2021-1860
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
974
|
7.8
6.8
|
HIGH
Local
|
Processing a maliciously crafted image may lead to arbitrary code execution. This issue is fixed in Security Update 2021-002 Catalina, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur …
|
CWE-787
Out-of-bounds Write
|
CVE-2021-1858
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
975
|
6.5
4.3
|
MEDIUM
Network
|
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iTunes 12.11.3 for Windows, Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iClou…
|
CWE-665
Improper Initialization
|
CVE-2021-1857
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
976
|
4.3
4.3
|
MEDIUM
Network
|
A call termination issue with was addressed with improved logic. This issue is fixed in iOS 14.5 and iPadOS 14.5. A legacy cellular network can automatically answer an incoming call when an ongoing c…
|
CWE-863
Incorrect Authorization
|
CVE-2021-1854
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
977
|
5.5
4.9
|
MEDIUM
Local
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.5 and iPadOS 14.5. A local user may be able to read kernel memory.
|
CWE-125
Out-of-bounds Read
|
CVE-2021-1852
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
978
|
8.8
9.3
|
HIGH
Network
|
A logic issue was addressed with improved state management. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5…
|
CWE-269
Improper Privilege Management
|
CVE-2021-1851
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
979
|
7.5
5.0
|
HIGH
Network
|
An issue in code signature validation was addressed with improved checks. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. A malicious application may be a…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2021-1849
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
980
|
5.5
2.1
|
MEDIUM
Local
|
The issue was addressed with improved UI handling. This issue is fixed in iOS 14.5 and iPadOS 14.5. A local user may be able to view sensitive information in the app switcher.
|
NVD-CWE-noinfo
|
CVE-2021-1848
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|