First published: Mon Jul 19 2021(Updated: )
An issue in code signature validation was addressed with improved checks. This issue is fixed in iOS 14.7, tvOS 14.7, watchOS 7.6. A malicious application may be able to bypass code signing checks.
Credit: Linus Henze (pinauten.de) Linus Henze (pinauten.de) product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <14.7 | |
Apple tvOS | <14.7 | |
Apple watchOS | <7.6 | |
Apple watchOS | <7.6 | 7.6 |
Apple tvOS | <14.7 | 14.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-30773 is a vulnerability in the Identity Service that allowed for an issue in code signature validation.
Users of Apple watchOS versions up to and excluding 7.6 and Apple tvOS versions up to and excluding 14.7 are affected by CVE-2021-30773.
The severity of CVE-2021-30773 is not specified in the provided information.
Apple has released updates (watchOS 7.6 and tvOS 14.7) that address the issue in code signature validation.
You can find more information about CVE-2021-30773 on the Apple support website.