|
951
|
6.5
4.3
|
MEDIUM
Network
|
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iTunes 12.11.3 for Windows, Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iClou…
|
CWE-665
Improper Initialization
|
CVE-2021-1857
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
952
|
4.3
4.3
|
MEDIUM
Network
|
A call termination issue with was addressed with improved logic. This issue is fixed in iOS 14.5 and iPadOS 14.5. A legacy cellular network can automatically answer an incoming call when an ongoing c…
|
CWE-863
Incorrect Authorization
|
CVE-2021-1854
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
953
|
5.5
4.9
|
MEDIUM
Local
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.5 and iPadOS 14.5. A local user may be able to read kernel memory.
|
CWE-125
Out-of-bounds Read
|
CVE-2021-1852
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
954
|
8.8
9.3
|
HIGH
Network
|
A logic issue was addressed with improved state management. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5…
|
CWE-269
Improper Privilege Management
|
CVE-2021-1851
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
955
|
7.5
5.0
|
HIGH
Network
|
An issue in code signature validation was addressed with improved checks. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. A malicious application may be a…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2021-1849
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
956
|
5.5
2.1
|
MEDIUM
Local
|
The issue was addressed with improved UI handling. This issue is fixed in iOS 14.5 and iPadOS 14.5. A local user may be able to view sensitive information in the app switcher.
|
NVD-CWE-noinfo
|
CVE-2021-1848
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
957
|
5.5
4.3
|
MEDIUM
Local
|
Processing a maliciously crafted audio file may disclose restricted memory. This issue is fixed in Security Update 2021-002 Catalina, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 1…
|
CWE-125
Out-of-bounds Read
|
CVE-2021-1846
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
958
|
7.8
6.8
|
HIGH
Local
|
This issue was addressed with improved checks. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big S…
|
NVD-CWE-noinfo
|
CVE-2021-1843
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
959
|
7.8
6.8
|
HIGH
Local
|
This issue was addressed with improved checks. This issue is fixed in iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution.
|
NVD-CWE-noinfo
|
CVE-2021-1838
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.4
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
960
|
5.3
4.3
|
MEDIUM
Network
|
A certificate validation issue was addressed. This issue is fixed in iOS 14.5 and iPadOS 14.5. An attacker in a privileged network position may be able to alter network traffic.
|
CWE-295
Improper Certificate Validation
|
CVE-2021-1837
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.5
|
2024-11-21 14:45
2021-09-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|