VDB

CVE-2021-30869

CVE-2021-30869 PUBLISHED KEV CVSS 8.800000190734863 HIGH

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 14.8 and iPadOS 14.8, macOS Big Sur 11.6. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.

EPSS 1.72% · 82.7th percentile

Risk Scores

CVSS v3.1
8.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
1.72%
82.7th percentile

Affected Products

VendorProductVersions
ApplemacOSunspecified
AppleiOSunspecified

Timeline

  • Aug 24, 2021 CVE Published
  • Sep 13, 2021 PoC Published
  • Sep 14, 2021 PoC Published
  • Sep 23, 2021 PoC Published
  • Sep 24, 2021 PoC Published
  • Oct 20, 2021 EPSS Score
  • Oct 21, 2021 EPSS Score
  • Nov 3, 2021 CISA KEV Added
  • Nov 8, 2021 PoC Published
  • Nov 20, 2021 PoC Published
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›