First published: Tue Jan 26 2021(Updated: )
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution.
Credit: Xingwei Lin Ant Security LightMickey Jin & Junzhi Lu Trend Micro working with Trend MicroXingwei Lin Ant Security LightXingwei Lin Ant Security LightMickey Jin & Junzhi Lu Trend Micro working with Trend MicroXingwei Lin Ant Security LightXingwei Lin Ant Security LightMickey Jin & Junzhi Lu Trend Micro working with Trend MicroXingwei Lin Ant Security LightXingwei Lin Ant Security LightMickey Jin & Junzhi Lu Trend Micro working with Trend MicroXingwei Lin Ant Security Light product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <14.4 | 14.4 |
Apple iPadOS | <14.4 | 14.4 |
Apple watchOS | <7.3 | 7.3 |
Apple iPadOS | <14.4 | |
Apple iPhone OS | <14.4 | |
Apple Mac OS X | >=10.14<10.14.6 | |
Apple Mac OS X | >=10.15<10.15.7 | |
Apple Mac OS X | =10.14.6 | |
Apple Mac OS X | =10.14.6-security_update_2019-001 | |
Apple Mac OS X | =10.14.6-security_update_2019-002 | |
Apple Mac OS X | =10.14.6-security_update_2020-001 | |
Apple Mac OS X | =10.14.6-security_update_2020-002 | |
Apple Mac OS X | =10.14.6-security_update_2020-003 | |
Apple Mac OS X | =10.14.6-security_update_2020-004 | |
Apple Mac OS X | =10.14.6-security_update_2020-005 | |
Apple Mac OS X | =10.14.6-security_update_2020-006 | |
Apple Mac OS X | =10.14.6-security_update_2020-007 | |
Apple Mac OS X | =10.14.6-supplemental_update | |
Apple Mac OS X | =10.14.6-supplemental_update_2 | |
Apple Mac OS X | =10.15.7 | |
Apple Mac OS X | =10.15.7-supplemental_update | |
Apple macOS | >=11.0<11.1.0 | |
Apple tvOS | <14.4 | |
Apple watchOS | <7.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2021-1741.
The affected software includes macOS Big Sur 11.2, Apple Catalina, Apple Mojave, Apple watchOS up to 7.3, Apple iOS up to 14.4, Apple iPadOS up to 14.4, and Apple tvOS up to 14.4.
The severity of CVE-2021-1741 is not provided.
To fix CVE-2021-1741, update to the latest version of the affected software.
You can find more information about CVE-2021-1741 on the Apple support website.