First published: Tue Aug 24 2021(Updated: )
Audio. An integer overflow was addressed through improved input validation.
Credit: Zweig Kunlun LabZweig Kunlun LabZweig Kunlun LabZweig Kunlun LabZweig Kunlun LabZweig Kunlun LabZweig Kunlun Lab cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS Monterey | <12.0.1 | 12.0.1 |
Apple macOS | <11.6.1 | 11.6.1 |
tvOS | <15.1 | 15.1 |
macOS Catalina | ||
iPadOS | <14.8.1 | |
Apple iOS, iPadOS, and watchOS | =15.0 | |
iOS | <14.8.1 | |
iOS | =15.0 | |
Apple iOS and macOS | <10.15.7 | |
Apple iOS and macOS | =10.15.7 | |
Apple iOS and macOS | =10.15.7-security_update_2020-001 | |
Apple iOS and macOS | =10.15.7-security_update_2021-001 | |
Apple iOS and macOS | =10.15.7-security_update_2021-002 | |
Apple iOS and macOS | =10.15.7-security_update_2021-003 | |
Apple iOS and macOS | =10.15.7-security_update_2021-004 | |
Apple iOS and macOS | =10.15.7-security_update_2021-005 | |
Apple iOS and macOS | =10.15.7-security_update_2021-006 | |
Apple iOS and macOS | =10.15.7-supplemental_update | |
Apple iOS and macOS | >=11.0<11.6.1 | |
Apple iOS and macOS | =12.0 | |
tvOS | <15.1 | |
Apple iOS, iPadOS, and watchOS | <8.1 | |
Apple iOS, iPadOS, and watchOS | <15.1 | 15.1 |
Apple iOS, iPadOS, and watchOS | <15.1 | 15.1 |
Apple iOS, iPadOS, and watchOS | <14.8.1 | 14.8.1 |
Apple iOS, iPadOS, and watchOS | <14.8.1 | 14.8.1 |
Apple iOS, iPadOS, and watchOS | <8.1 | 8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
CVE-2021-30907 is a vulnerability in the Audio component that allows for integer overflow, which has been addressed through improved input validation.
CVE-2021-30907 affects Apple Catalina, but it has been fixed in macOS Big Sur 11.6.1.
Yes, iPadOS is affected by CVE-2021-30907, but it has been fixed in version 15.1.
The CWE for CVE-2021-30907 is CWE-20 and CWE-190.
You can find more information about CVE-2021-30907 on the Apple support page: [https://support.apple.com/en-us/HT212867](https://support.apple.com/en-us/HT212867)