|
921
|
7.8
9.3
|
HIGH
Local
|
A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6…
|
CWE-20
Improper Input Validation
|
CVE-2021-30681
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.6
|
2024-11-21 15:04
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
922
|
8.8
4.6
|
HIGH
Local
|
This issue was addressed with improved environment sanitization. This issue is fixed in tvOS 14.6, iOS 14.6 and iPadOS 14.6, Security Update 2021-004 Catalina, Security Update 2021-005 Mojave, macOS …
|
NVD-CWE-noinfo
|
CVE-2021-30677
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.6
|
2024-11-21 15:04
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
923
|
5.5
4.3
|
MEDIUM
Local
|
This issue was addressed with improved checks. This issue is fixed in iOS 14.6 and iPadOS 14.6. A malicious application may disclose restricted memory.
|
NVD-CWE-noinfo
|
CVE-2021-30674
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.6
|
2024-11-21 15:04
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
924
|
5.4
4.8
|
MEDIUM
Adjacent
|
A logic issue was addressed with improved validation. This issue is fixed in iOS 14.6 and iPadOS 14.6. An attacker in WiFi range may be able to force a client to use a less secure authentication mech…
|
CWE-287
Improper Authentication
|
CVE-2021-30667
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.6
|
2024-11-21 15:04
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
925
|
8.8
6.8
|
HIGH
Network
|
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 12.5.3. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2021-30666
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
12.5.3
|
2024-11-21 15:04
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
926
|
7.8
6.8
|
HIGH
Local
|
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. Processing a maliciously crafted…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-30664
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 15:04
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
927
|
8.8
6.8
|
HIGH
Network
|
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 14.5.1 and iPadOS 14.5.1, tvOS 14.6, iOS 12.5.3, Safari 14.1.1, macOS Big Sur 11.3.1. Processing malicious…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2021-30663
|
cpe:2.3:o:apple:iphone_os:*:*
|
14.0
|
|
|
12.5.3 14.5.1
|
2024-11-21 15:04
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
928
|
7.3
6.8
|
HIGH
Local
|
This issue was addressed with improved checks. This issue is fixed in iOS 14.5 and iPadOS 14.5. Processing a maliciously crafted file may lead to arbitrary code execution.
|
NVD-CWE-noinfo
|
CVE-2021-30662
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 15:04
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
929
|
7.5
7.8
|
HIGH
Network
|
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. A malicious application may be able to …
|
CWE-125
Out-of-bounds Read
|
CVE-2021-30660
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 15:04
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
930
|
6.5
4.3
|
MEDIUM
Network
|
A validation issue was addressed with improved logic. This issue is fixed in iOS 14.5 and iPadOS 14.5, watchOS 7.4, macOS Big Sur 11.3. A malicious application may be able to leak sensitive user info…
|
NVD-CWE-noinfo
|
CVE-2021-30659
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 15:04
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|