First published: Mon Apr 26 2021(Updated: )
Compression. An out-of-bounds read was addressed with improved input validation.
Credit: Ye Zhang @co0py_Cat Baidu SecurityYe Zhang @co0py_Cat Baidu SecurityYe Zhang @co0py_Cat Baidu SecurityYe Zhang @co0py_Cat Baidu Security product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <14.5 | 14.5 |
Apple iPadOS | <14.5 | 14.5 |
Apple tvOS | <14.5 | 14.5 |
<7.4 | 7.4 | |
Apple macOS Big Sur | <11.3 | 11.3 |
Apple iPadOS | <14.5 | |
Apple iPhone OS | <14.5 | |
Apple macOS | >=11.0<11.3 | |
Apple tvOS | <14.5 | |
Apple watchOS | <7.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-30752 is a vulnerability related to compression where an out-of-bounds read was addressed with improved input validation.
The impact of CVE-2021-30752 is that processing a maliciously crafted image may lead to arbitrary code execution.
CVE-2021-30752 affects Apple watchOS 7.4, Apple iOS up to version 14.5, Apple iPadOS up to version 14.5, Apple macOS Big Sur up to version 11.3, and Apple tvOS up to version 14.5.
To fix CVE-2021-30752, update your Apple watchOS to version 7.4, Apple iOS to version 14.5, Apple iPadOS to version 14.5, Apple macOS Big Sur to version 11.3, and Apple tvOS to version 14.5.
For more information about CVE-2021-30752, you can refer to the following references: [Link 1](https://support.apple.com/en-us/HT212317), [Link 2](https://support.apple.com/en-us/HT212324), [Link 3](https://support.apple.com/en-us/HT212325).