First published: Tue Jan 26 2021(Updated: )
An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing maliciously crafted web content may lead to code execution.
Credit: JunDong Xie Ant Security LightJunDong Xie Ant Security LightJunDong Xie Ant Security LightJunDong Xie Ant Security Light product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPadOS | <14.4 | |
Apple iPhone OS | <14.4 | |
Apple Mac OS X | >=10.14<10.14.6 | |
Apple Mac OS X | >=10.15<10.15.7 | |
Apple Mac OS X | =10.14.6 | |
Apple Mac OS X | =10.14.6-security_update_2019-004 | |
Apple Mac OS X | =10.14.6-security_update_2019-005 | |
Apple Mac OS X | =10.14.6-security_update_2019-006 | |
Apple Mac OS X | =10.14.6-security_update_2019-007 | |
Apple Mac OS X | =10.14.6-security_update_2020-001 | |
Apple Mac OS X | =10.14.6-security_update_2020-002 | |
Apple Mac OS X | =10.14.6-security_update_2020-003 | |
Apple Mac OS X | =10.14.6-security_update_2020-004 | |
Apple Mac OS X | =10.14.6-security_update_2020-005 | |
Apple Mac OS X | =10.14.6-security_update_2020-006 | |
Apple Mac OS X | =10.14.6-security_update_2020-007 | |
Apple Mac OS X | =10.14.6-supplemental_update | |
Apple Mac OS X | =10.14.6-supplemental_update_2 | |
Apple Mac OS X | =10.15.7 | |
Apple Mac OS X | =10.15.7-supplemental_update | |
Apple macOS | >=11.0<11.2 | |
Apple tvOS | <14.4 | |
Apple watchOS | <7.3 | |
Apple watchOS | <7.3 | 7.3 |
Apple tvOS | <14.4 | 14.4 |
Apple iOS | <14.4 | 14.4 |
Apple iPadOS | <14.4 | 14.4 |
Apple macOS Big Sur | <11.2 | 11.2 |
Apple Catalina | ||
Apple Mojave |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-1747 is a vulnerability in CoreAudio that allows an attacker to carry out an out-of-bounds write due to a lack of proper input validation.
The severity of CVE-2021-1747 is not specified in the provided information.
CVE-2021-1747 affects macOS Big Sur 11.2, Apple Catalina, Apple Mojave, Apple watchOS up to 7.3, Apple iOS up to 14.4, Apple iPadOS up to 14.4, and Apple tvOS up to 14.4.
To fix CVE-2021-1747, it is recommended to update the affected software to the latest version provided by Apple.
More information about CVE-2021-1747 can be found on the Apple support website at the following links: [link1](https://support.apple.com/en-us/HT212149), [link2](https://support.apple.com/en-us/HT212147), [link3](https://support.apple.com/en-us/HT212148).