First published: Tue Jan 26 2021(Updated: )
A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. A malicious application could execute arbitrary code leading to compromise of user information.
Credit: @S0rryMybad 360 Vulcan Team product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
tvOS | <14.4 | 14.4 |
Apple macOS | <11.2 | 11.2 |
macOS Catalina | ||
macOS Mojave | ||
Apple iOS, iPadOS, and watchOS | <14.4 | |
iOS | <14.4 | |
Apple iOS and macOS | >=10.14<10.14.6 | |
Apple iOS and macOS | >=10.15<10.15.7 | |
Apple iOS and macOS | =10.14.6 | |
Apple iOS and macOS | =10.14.6-security_update_2019-001 | |
Apple iOS and macOS | =10.14.6-security_update_2019-002 | |
Apple iOS and macOS | =10.14.6-security_update_2020-001 | |
Apple iOS and macOS | =10.14.6-security_update_2020-002 | |
Apple iOS and macOS | =10.14.6-security_update_2020-003 | |
Apple iOS and macOS | =10.14.6-security_update_2020-004 | |
Apple iOS and macOS | =10.14.6-security_update_2020-005 | |
Apple iOS and macOS | =10.14.6-security_update_2020-006 | |
Apple iOS and macOS | =10.14.6-security_update_2020-007 | |
Apple iOS and macOS | =10.14.6-supplemental_update | |
Apple iOS and macOS | =10.14.6-supplemental_update_2 | |
Apple iOS and macOS | =10.15.7 | |
Apple iOS and macOS | =10.15.7-supplemental_update | |
Apple iOS and macOS | >=11.0<11.2 | |
tvOS | <14.4 | |
Apple iOS, iPadOS, and watchOS | <7.3 | |
Apple iOS, iPadOS, and watchOS | <14.4 | 14.4 |
Apple iOS, iPadOS, and watchOS | <14.4 | 14.4 |
Apple iOS, iPadOS, and watchOS | <7.3 | 7.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-1760 is a memory corruption issue in CoreAnimation that has been addressed with improved state management.
macOS Big Sur 11.2, Apple Catalina, Apple Mojave, Apple watchOS up to version 7.3, Apple iOS up to version 14.4, Apple iPadOS up to version 14.4, and Apple tvOS up to version 14.4.
To fix the vulnerability, you should update your software to the latest available version. Please refer to the vendor's official support page for more information.