First published: Mon Apr 26 2021(Updated: )
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. A malicious application may be able to disclose kernel memory.
Credit: Alex Plaskett Alex Plaskett Alex Plaskett Alex Plaskett product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <14.5 | 14.5 |
Apple iPadOS | <14.5 | 14.5 |
Apple tvOS | <14.5 | 14.5 |
<7.4 | 7.4 | |
Apple macOS Big Sur | <11.3 | 11.3 |
Apple iPadOS | <14.5 | |
Apple iPhone OS | <14.5 | |
Apple macOS | >=11.0<11.3 | |
Apple tvOS | <14.5 | |
Apple watchOS | <7.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-30660 is a vulnerability in the Kernel that allows an out-of-bounds read.
Users of Apple iOS, iPadOS, watchOS, macOS Big Sur, and tvOS versions up to and excluding 14.5, 7.4, 11.3, and 14.5 respectively are affected by CVE-2021-30660.
The severity level of CVE-2021-30660 is not specified.
To remedy CVE-2021-30660, update to Apple iOS 14.5, iPadOS 14.5, watchOS 7.4, macOS Big Sur 11.3, or tvOS 14.5.
More information about CVE-2021-30660 can be found on the Apple support website at the following references: [1](https://support.apple.com/en-us/HT212317), [2](https://support.apple.com/en-us/HT212324), [3](https://support.apple.com/en-us/HT212325).