First published: Tue Aug 24 2021(Updated: )
CoreGraphics. An integer overflow was addressed with improved input validation.
Credit: The Citizen Lab The Citizen Lab The Citizen Lab cve@mitre.org The Citizen Lab The Citizen Lab product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Catalina | ||
Apple macOS Big Sur | <11.6 | 11.6 |
Apple watchOS | <7.6.2 | 7.6.2 |
Apple iPadOS | <14.8 | |
Apple iPhone OS | <12.5.5 | |
Apple iPhone OS | >=13.0<14.8 | |
Apple Mac OS X | >=10.15<10.15.7 | |
Apple Mac OS X | =10.15.7 | |
Apple Mac OS X | =10.15.7-security_update_2020 | |
Apple Mac OS X | =10.15.7-security_update_2020-001 | |
Apple Mac OS X | =10.15.7-security_update_2021-001 | |
Apple Mac OS X | =10.15.7-security_update_2021-002 | |
Apple Mac OS X | =10.15.7-security_update_2021-003 | |
Apple Mac OS X | =10.15.7-security_update_2021-004 | |
Apple macOS | <11.6 | |
Apple watchOS | <7.6.2 | |
Xpdfreader Xpdf | <4.04 | |
freedesktop poppler | <22.09.0 | |
Apple iOS | <12.5.5 | 12.5.5 |
Apple iOS | <14.8 | 14.8 |
Apple iPadOS | <14.8 | 14.8 |
Apple Multiple Products | ||
<14.8 | ||
<12.5.5 | ||
>=13.0<14.8 | ||
>=10.15<10.15.7 | ||
=10.15.7 | ||
=10.15.7-security_update_2020 | ||
=10.15.7-security_update_2020-001 | ||
=10.15.7-security_update_2021-001 | ||
=10.15.7-security_update_2021-002 | ||
=10.15.7-security_update_2021-003 | ||
=10.15.7-security_update_2021-004 | ||
<11.6 | ||
<7.6.2 | ||
<4.04 | ||
<22.09.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-30860 is an integer overflow vulnerability in Apple iOS, iPadOS, macOS, and watchOS CoreGraphics that allows code execution when processing a maliciously crafted PDF.
The CVE-2021-30860 vulnerability can be exploited by processing a specially crafted PDF file.
Apple iOS, iPadOS, macOS, and watchOS are affected by CVE-2021-30860.
The severity of CVE-2021-30860 is not specified in the provided information.
To fix the CVE-2021-30860 vulnerability, update to the recommended versions of Apple iOS, iPadOS, macOS, and watchOS as provided by Apple.