VDB
CVE-2021-1857
CVE-2021-1857
PUBLISHED
CVSS 6.5 MEDIUM
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iTunes 12.11.3 for Windows, Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iCloud for Windows 12.3, macOS Big Sur 11.3, watchOS 7.4, tvOS 14.5, iOS 14.5 and iPadOS 14.5. Processing maliciously crafted web content may disclose sensitive user information.
EPSS 0.60% · 70.1th percentile
Risk Scores
CVSS v3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS Score
0.60%
70.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| apple | mac_os_x | 10.14.6, 10.15.1, 10.15.3 |
| apple | itunes | 0 |
| Apple | macOS | unspecified, unspecified, unspecified |
| apple | watchos | 0 |
| Apple | iOS and iPadOS | unspecified |
| Apple | iTunes for Windows | unspecified |
| apple | macos | 11.0 |
| apple | tvos | 0 |
| Apple | tvOS | unspecified |
| apple | icloud | 0 |
| Apple | iCloud for Windows | unspecified |
| apple | ipados | 0 |
| apple | iphone_os | 0 |
| Apple | watchOS | unspecified |
Timeline
- Apr 27, 2021 CVE Published
- Sep 9, 2021 EPSS Score
- Sep 17, 2021 EPSS Score
- Nov 6, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Feb 4, 2022 EPSS Score
- Mar 1, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- Jun 24, 2022 EPSS Score
- Aug 22, 2022 EPSS Score
- Oct 19, 2022 EPSS Score
- Dec 16, 2022 EPSS Score
References
- https://support.apple.com/fr-fr/HT212325 advisory
- https://support.apple.com/fr-fr/HT212327 advisory
- https://support.apple.com/fr-fr/HT212317 advisory
- https://support.apple.com/fr-fr/HT212318 advisory
- https://support.apple.com/fr-fr/HT212324 advisory
- https://support.apple.com/fr-fr/HT212326 advisory
- https://support.apple.com/fr-fr/HT212319 advisory
- https://support.apple.com/fr-fr/HT212323 advisory
- https://support.apple.com/fr-fr/HT212320 advisory
- https://support.apple.com/fr-fr/HT212321 advisory
- https://support.apple.com/en-us/HT212317 url
- https://support.apple.com/en-us/HT212323 url
- https://support.apple.com/en-us/HT212324 url
- https://support.apple.com/en-us/HT212325 url
- https://support.apple.com/en-us/HT212326 url
- https://support.apple.com/en-us/HT212327 url
- https://support.apple.com/en-us/HT212319 url
- https://support.apple.com/en-us/HT212321 url
- https://nvd.nist.gov/vuln/detail/CVE-2021-1857 advisory