VDB
CVE-2021-30837
CVE-2021-30837
PUBLISHED
CVSS 7.800000190734863 HIGH
A memory consumption issue was addressed with improved memory handling. This issue is fixed in iOS 15 and iPadOS 15, watchOS 8, tvOS 15. An application may be able to execute arbitrary code with kernel privileges.
EPSS 0.38% · 60.0th percentile
Risk Scores
CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.38%
60.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| apple | ipados | 0 |
| apple | iphone_os | 0 |
| Apple | tvOS | unspecified |
| Apple | iOS and iPadOS | unspecified |
| apple | tvos | 0 |
| Apple | watchOS | unspecified |
Exploit Intelligence
- https://support.apple.com/en-us/HT212814 (circl)
- https://support.apple.com/en-us/HT212819 (circl)
- https://support.apple.com/en-us/HT212815 (circl)
- 20211027 APPLE-SA-2021-10-26-10 Additional information for APPLE-SA-2021-09-20-2 watchOS 8 (circl)
- 20211027 APPLE-SA-2021-10-26-11 Additional information for APPLE-SA-2021-09-20-3 tvOS 15 (circl)
- 20211027 APPLE-SA-2021-10-26-9 Additional information for APPLE-SA-2021-09-20-1 iOS 15 and iPadOS 15 (circl)
Timeline
- Sep 21, 2021 CVE Published
- Oct 20, 2021 EPSS Score
- Oct 21, 2021 EPSS Score
- Dec 15, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 10, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- Apr 7, 2022 EPSS Score
- Jun 2, 2022 EPSS Score
- Jul 29, 2022 EPSS Score
- Nov 19, 2022 EPSS Score
- Jan 14, 2023 EPSS Score
References
- https://support.apple.com/en-us/HT212818 advisory
- https://support.apple.com/en-us/HT212819 advisory
- https://support.apple.com/en-us/HT212816 advisory
- https://support.apple.com/en-us/HT212814 advisory
- https://support.apple.com/en-us/HT212815 advisory
- 20211027 APPLE-SA-2021-10-26-10 Additional information for APPLE-SA-2021-09-20-2 watchOS 8 mailing-list
- 20211027 APPLE-SA-2021-10-26-11 Additional information for APPLE-SA-2021-09-20-3 tvOS 15 mailing-list
- 20211027 APPLE-SA-2021-10-26-9 Additional information for APPLE-SA-2021-09-20-1 iOS 15 and iPadOS 15 mailing-list
- https://nvd.nist.gov/vuln/detail/CVE-2021-30837 advisory