|
981
|
5.5
4.3
|
MEDIUM
Local
|
Processing a maliciously crafted audio file may disclose restricted memory. This issue is fixed in Security Update 2021-002 Catalina, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 1…
|
CWE-125
Out-of-bounds Read
|
CVE-2021-1846
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
982
|
7.8
6.8
|
HIGH
Local
|
This issue was addressed with improved checks. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big S…
|
NVD-CWE-noinfo
|
CVE-2021-1843
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
983
|
7.8
6.8
|
HIGH
Local
|
This issue was addressed with improved checks. This issue is fixed in iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution.
|
NVD-CWE-noinfo
|
CVE-2021-1838
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.4
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
984
|
5.3
4.3
|
MEDIUM
Network
|
A certificate validation issue was addressed. This issue is fixed in iOS 14.5 and iPadOS 14.5. An attacker in a privileged network position may be able to alter network traffic.
|
CWE-295
Improper Certificate Validation
|
CVE-2021-1837
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
985
|
5.5
2.1
|
MEDIUM
Local
|
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 14.5 and iPadOS 14.5, tvOS 14.5. A local user may be able to create or modify privileged files.
|
CWE-269
Improper Privilege Management
|
CVE-2021-1836
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
986
|
4.6
2.1
|
MEDIUM
Physics
|
This issue was addressed with improved checks. This issue is fixed in iOS 14.5 and iPadOS 14.5. A person with physical access to an iOS device may be able to access notes from the lock screen.
|
CWE-862
Missing Authorization
|
CVE-2021-1835
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
987
|
7.8
6.8
|
HIGH
Local
|
This issue was addressed with improved checks. This issue is fixed in iOS 14.5 and iPadOS 14.5. An application may be able to gain elevated privileges.
|
NVD-CWE-noinfo
|
CVE-2021-1833
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
988
|
5.5
4.3
|
MEDIUM
Local
|
Copied files may not have the expected file permissions. This issue is fixed in Security Update 2021-002 Catalina, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. The issue was …
|
CWE-276
Incorrect Default Permissions
|
CVE-2021-1832
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
989
|
5.5
4.3
|
MEDIUM
Local
|
The issue was addressed with improved permissions logic. This issue is fixed in iOS 14.5 and iPadOS 14.5. An application may allow shortcuts to access restricted files.
|
CWE-276
Incorrect Default Permissions
|
CVE-2021-1831
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
990
|
5.5
4.9
|
MEDIUM
Local
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.5 and iPadOS 14.5. A local user may be able to read kernel memory.
|
CWE-125
Out-of-bounds Read
|
CVE-2021-1830
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|