First published: Mon Jul 19 2021(Updated: )
A type confusion issue was addressed with improved state handling. This issue is fixed in iOS 14.7, Safari 14.1.2, macOS Big Sur 11.5, watchOS 7.6, tvOS 14.7. Processing maliciously crafted web content may lead to arbitrary code execution.
Credit: Christoph Guttandin Media CodingsChristoph Guttandin Media CodingsChristoph Guttandin Media CodingsChristoph Guttandin Media Codings product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/webkit2gtk | 2.36.4-1~deb10u1 2.38.6-0+deb10u1 2.40.5-1~deb11u1 2.42.1-1~deb11u2 2.40.5-1~deb12u1 2.42.1-1~deb12u1 2.42.1-2 | |
debian/wpewebkit | 2.38.6-1~deb11u1 2.38.6-1 2.42.1-1 | |
Apple Safari | <14.1.2 | |
Apple iPhone OS | <14.7 | |
Apple macOS | <11.5 | |
Apple tvOS | <14.7 | |
Apple watchOS | <7.6 | |
Apple watchOS | <7.6 | 7.6 |
Apple macOS Big Sur | <11.5 | 11.5 |
Apple tvOS | <14.7 | 14.7 |
Apple Safari | <14.1.2 | 14.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-30758 is a type confusion issue in WebKit that has been addressed with improved state handling.
The following software is affected by CVE-2021-30758: macOS Big Sur (up to version 11.5), Safari (up to version 14.1.2), watchOS (up to version 7.6), and tvOS (up to version 14.7).
To fix the CVE-2021-30758 vulnerability, you should update your affected software to the latest available version. Please refer to the vendor's official support page for more information.
You can find more information about CVE-2021-30758 on Apple's support page at the following URLs: [support.apple.com/en-us/HT212605](https://support.apple.com/en-us/HT212605), [support.apple.com/en-us/HT212604](https://support.apple.com/en-us/HT212604), [support.apple.com/en-us/HT212602](https://support.apple.com/en-us/HT212602).
The severity of CVE-2021-30758 has not been mentioned. Please refer to the vendor's official support page or security advisories for more information.