|
941
|
8.8
9.3
|
HIGH
Network
|
A logic issue was addressed with improved state management. This issue is fixed in iOS 14.5 and iPadOS 14.5. An application may be able to execute arbitrary code with kernel privileges.
|
NVD-CWE-noinfo
|
CVE-2021-1874
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
942
|
4.3
4.3
|
MEDIUM
Network
|
A logic issue was addressed with improved state management. This issue is fixed in iOS 14.5 and iPadOS 14.5, watchOS 7.4, macOS Big Sur 11.3. Muting a CallKit call while ringing may not result in mut…
|
NVD-CWE-noinfo
|
CVE-2021-1872
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
943
|
7.8
4.6
|
HIGH
Local
|
A logic issue was addressed with improved state management. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5…
|
CWE-269
Improper Privilege Management
|
CVE-2021-1868
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
944
|
8.8
9.3
|
HIGH
Network
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.5 and iPadOS 14.5, macOS Big Sur 11.3. A malicious application may be able to execute arbitrary code …
|
CWE-125
Out-of-bounds Read
|
CVE-2021-1867
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
945
|
5.0
4.3
|
MEDIUM
Local
|
An issue obscuring passwords in screenshots was addressed with improved logic. This issue is fixed in iOS 14.5 and iPadOS 14.5. A user's password may be visible on screen.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2021-1865
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
946
|
9.8
7.5
|
CRITICAL
Network
|
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. An attacker with JavaScript execution may be able to exe…
|
CWE-416
Use After Free
|
CVE-2021-1864
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
947
|
2.4
2.1
|
LOW
Physics
|
An issue existed with authenticating the action triggered by an NFC tag. The issue was addressed with improved action authentication. This issue is fixed in iOS 14.5 and iPadOS 14.5. A person with ph…
|
CWE-287
Improper Authentication
|
CVE-2021-1863
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
948
|
2.4
2.1
|
LOW
Physics
|
Description: A person with physical access may be able to access contacts. This issue is fixed in iOS 14.5 and iPadOS 14.5. Impact: An issue with Siri search access to information was addressed with …
|
NVD-CWE-noinfo
|
CVE-2021-1862
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
949
|
6.5
7.1
|
MEDIUM
Network
|
A memory initialization issue was addressed with improved memory handling. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS…
|
CWE-665
Improper Initialization
|
CVE-2021-1860
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
950
|
7.8
6.8
|
HIGH
Local
|
Processing a maliciously crafted image may lead to arbitrary code execution. This issue is fixed in Security Update 2021-002 Catalina, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur …
|
CWE-787
Out-of-bounds Write
|
CVE-2021-1858
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|