Apple Security Update 2021-004 Mojave vulnerabilities

49 known vulnerabilities affecting apple/security_update_2021-004_mojave.

Total CVEs
49
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH27MEDIUM20

Vulnerabilities

Page 3 of 3
CVE-2021-30687MEDIUMCVSS 5.52021-05-24
CVE-2021-30687 [MEDIUM] CVE-2021-30687: Security Update 2021-004 Mojave Apple Security Update: About the security content of Security Update 2021-004 Mojave Product: Security Update 2021-004 Mojave CVE: CVE-2021-30687 Component: ImageIO Impact: Processing a maliciously crafted image may lead to disclosure of user information Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2021-30746MEDIUMCVSS 5.52021-05-24
CVE-2021-30746 [MEDIUM] CVE-2021-30746: Security Update 2021-004 Mojave Apple Security Update: About the security content of Security Update 2021-004 Mojave Product: Security Update 2021-004 Mojave CVE: CVE-2021-30746 Component: Model I/O Impact: Processing a maliciously crafted USD file may disclose memory contents Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2021-30702MEDIUMCVSS 4.62021-05-24
CVE-2021-30702 [MEDIUM] CVE-2021-30702: Security Update 2021-004 Mojave Apple Security Update: About the security content of Security Update 2021-004 Mojave Product: Security Update 2021-004 Mojave CVE: CVE-2021-30702 Component: Login Window Impact: A person with physical access to a Mac may be able to bypass Login Window Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30695MEDIUMCVSS 5.52021-05-24
CVE-2021-30695 [MEDIUM] CVE-2021-30695: Security Update 2021-004 Mojave Apple Security Update: About the security content of Security Update 2021-004 Mojave Product: Security Update 2021-004 Mojave CVE: CVE-2021-30695 Component: Model I/O Impact: Processing a maliciously crafted USD file may disclose memory contents Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2021-30705MEDIUMCVSS 5.52021-05-24
CVE-2021-30705 [MEDIUM] CVE-2021-30705: Security Update 2021-004 Mojave Apple Security Update: About the security content of Security Update 2021-004 Mojave Product: Security Update 2021-004 Mojave CVE: CVE-2021-30705 Component: ImageIO Impact: Processing a maliciously crafted ASTC file may disclose memory contents Description: This issue was addressed with improved checks.
apple
CVE-2021-30692MEDIUMCVSS 5.52021-05-24
CVE-2021-30692 [MEDIUM] CVE-2021-30692: Security Update 2021-004 Mojave Apple Security Update: About the security content of Security Update 2021-004 Mojave Product: Security Update 2021-004 Mojave CVE: CVE-2021-30692 Component: Model I/O Impact: Processing a maliciously crafted USD file may disclose memory contents Description: An information disclosure issue was addressed with improved state management.
apple
CVE-2021-30694MEDIUMCVSS 5.52021-05-24
CVE-2021-30694 [MEDIUM] CVE-2021-30694: Security Update 2021-004 Mojave Apple Security Update: About the security content of Security Update 2021-004 Mojave Product: Security Update 2021-004 Mojave CVE: CVE-2021-30694 Component: Model I/O Impact: Processing a maliciously crafted USD file may disclose memory contents Description: An information disclosure issue was addressed with improved state management.
apple
CVE-2021-30722MEDIUMCVSS 5.92021-05-24
CVE-2021-30722 [MEDIUM] CVE-2021-30722: Security Update 2021-004 Mojave Apple Security Update: About the security content of Security Update 2021-004 Mojave Product: Security Update 2021-004 Mojave CVE: CVE-2021-30722 Component: Security Impact: A memory corruption issue in the ASN.1 decoder was addressed by removing the vulnerable code Description: Processing a maliciously crafted certificate may lead to arbitrary code execution.
apple
CVE-2021-1883MEDIUMCVSS 5.52021-05-24
CVE-2021-1883 [MEDIUM] CVE-2021-1883: Security Update 2021-004 Mojave Apple Security Update: About the security content of Security Update 2021-004 Mojave Product: Security Update 2021-004 Mojave CVE: CVE-2021-1883 Component: Heimdal Impact: Processing maliciously crafted server messages may lead to heap corruption Description: This issue was addressed with improved checks.
apple