First published: Tue Feb 09 2021(Updated: )
An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2.1, macOS Catalina 10.15.7 Supplemental Update, macOS Mojave 10.14.6 Security Update 2021-002. An application may be able to execute arbitrary code with kernel privileges.
Credit: product-security@apple.com ABC Research s.r.o. Trend Micro Zero Day Initiative
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | >=10.14<10.14.6 | |
macOS Yosemite | >=10.15<10.15.7 | |
macOS Yosemite | =10.14.6 | |
macOS Yosemite | =10.14.6-security_update_2019-001 | |
macOS Yosemite | =10.14.6-security_update_2019-002 | |
macOS Yosemite | =10.14.6-security_update_2020-001 | |
macOS Yosemite | =10.14.6-security_update_2020-002 | |
macOS Yosemite | =10.14.6-security_update_2020-003 | |
macOS Yosemite | =10.14.6-security_update_2020-004 | |
macOS Yosemite | =10.14.6-security_update_2020-005 | |
macOS Yosemite | =10.14.6-security_update_2020-006 | |
macOS Yosemite | =10.14.6-security_update_2020-007 | |
macOS Yosemite | =10.14.6-security_update_2021-001 | |
macOS Yosemite | =10.14.6-security_update_2021-002 | |
macOS Yosemite | =10.14.6-supplemental_update | |
macOS Yosemite | =10.14.6-supplemental_update_2 | |
macOS Yosemite | =10.15.7 | |
macOS Yosemite | =10.15.7-security_update_2020-001 | |
macOS Yosemite | =10.15.7-supplemental_update | |
Apple macOS | >=11.0<11.2 | |
macOS Mojave | ||
Apple macOS | <11.2.1 | 11.2.1 |
Apple macOS Supplemental Update | <10.15.7 | 10.15.7 |
macOS Mojave | <10.14.6 | 10.14.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this vulnerability is CVE-2021-1805.
The severity level of CVE-2021-1805 is not specified in the information provided.
The affected software includes Apple Mojave, Apple macOS Big Sur (up to version 11.2.1), Apple macOS Catalina Supplemental Update (up to version 10.15.7), and Apple macOS Mojave (up to version 10.14.6).
To fix CVE-2021-1805, update your software to the latest available version provided by Apple.
You can find more information about CVE-2021-1805 on the following references: [Reference 1](https://support.apple.com/en-us/HT212327) and [Reference 2](https://support.apple.com/en-us/HT212177).