CVE-2021-30834Apple IOS AND Ipados vulnerability

9 documents4 sources
Severity
7.8HIGHNVD
EPSS
0.3%
top 42.96%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 28
Latest updateMay 24

Description

A logic issue was addressed with improved state management. This issue is fixed in iOS 14.8 and iPadOS 14.8, tvOS 15, iOS 15 and iPadOS 15, watchOS 8, Security Update 2021-007 Catalina. Processing a malicious audio file may result in unexpected application termination or arbitrary code execution.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages10 packages

CVEListV5apple/security_update_catalinaunspecified2021
NVDapple/ipados< 14.8
CVEListV5apple/ios_and_ipadosunspecified14.8+1
CVEListV5apple/tvosunspecified15
NVDapple/tvos< 15.0

🔴Vulnerability Details

2
GHSA
GHSA-rj6w-wp2h-8j52: A logic issue was addressed with improved state management2022-05-24
CVEList
CVE-2021-30834: A logic issue was addressed with improved state management2021-10-28

📋Vendor Advisories

6
Apple
CVE-2021-30834: Security Update 2021-007 Catalina2021-10-25
Apple
CVE-2021-30834: watchOS 82021-09-20
Apple
CVE-2021-30834: iOS 15 and iPadOS 152021-09-20
Apple
CVE-2021-30834: tvOS 152021-09-20
Apple
CVE-2021-30834: macOS Big Sur 11.62021-09-13
CVE-2021-30834 — Apple IOS AND Ipados vulnerability | cvebase