First published: Mon Apr 26 2021(Updated: )
ImageIO. Processing a maliciously crafted file may lead to arbitrary code execution.
Credit: Anonymous Trend Micro Zero Day InitiativeAnonymous Trend Micro Zero Day InitiativeJzhu Trend Micro Zero Day InitiativeAnonymous Trend Micro Zero Day InitiativeAnonymous Trend Micro Zero Day Initiative product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <14.5 | 14.5 |
Apple iPadOS | <14.5 | 14.5 |
Apple tvOS | <14.5 | 14.5 |
<7.4 | 7.4 | |
Apple iPadOS | <14.5 | |
Apple iPhone OS | <14.5 | |
Apple tvOS | <14.5 | |
Apple watchOS | <7.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-30764 is a vulnerability in Apple iOS, iPadOS, watchOS, and tvOS that could allow arbitrary code execution when processing a specially crafted file.
CVE-2021-30764 may lead to arbitrary code execution if a maliciously crafted file is processed.
Apple iOS, iPadOS, watchOS, and tvOS versions up to 14.5, 7.4, 14.5, and 14.5 respectively are affected by CVE-2021-30764.
Upgrade your Apple device to the recommended versions: iOS 14.5, iPadOS 14.5, watchOS 7.4, or tvOS 14.5.
You can find more information about CVE-2021-30764 on the Apple support website: [support.apple.com](https://support.apple.com/en-us/HT212317, https://support.apple.com/en-us/HT212324, https://support.apple.com/en-us/HT212323).