First published: Mon May 24 2021(Updated: )
WebRTC. A null pointer dereference was addressed with improved input validation.
Credit: Tavis Ormandy GoogleTavis Ormandy GoogleTavis Ormandy GoogleTavis Ormandy GoogleTavis Ormandy GoogleTavis Ormandy Google product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS Big Sur | <11.4 | 11.4 |
Apple Safari | <14.1.1 | |
Apple iPadOS | <14.6 | |
Apple iPhone OS | <14.6 | |
Apple macOS | >=11.0<11.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-30698 is a vulnerability in WebRTC that allows for a null pointer dereference, which has been addressed with improved input validation.
CVE-2021-30698 affects Apple Safari version up to and excluding 14.1.1, macOS Big Sur version up to and excluding 11.4, Apple iOS version up to and excluding 14.6, and Apple iPadOS version up to and excluding 14.6.
The severity of CVE-2021-30698 is not specified in the provided information.
To fix CVE-2021-30698, update Apple Safari to version 14.1.1 or later, macOS Big Sur to version 11.4 or later, iOS to version 14.6 or later, and iPadOS to version 14.6 or later.
You can find more information about CVE-2021-30698 on the Apple support page: [link](https://support.apple.com/en-us/HT212529)