First published: Tue Aug 24 2021(Updated: )
A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.2, macOS Monterey 12.1, Safari 15.2, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Processing maliciously crafted web content may lead to arbitrary code execution.
Credit: Chijin Zhou ShuiMuYuLin LtdTsinghua wingtecher lab Pangu via Tianfu Cup Pangu cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/webkit2gtk | 2.36.4-1~deb10u1 2.38.6-0+deb10u1 2.40.5-1~deb11u1 2.42.1-1~deb11u2 2.40.5-1~deb12u1 2.42.1-1~deb12u1 2.42.1-2 | |
debian/wpewebkit | 2.38.6-1~deb11u1 2.38.6-1 2.42.1-1 | |
tvOS | <15.2 | 15.2 |
Apple Mobile Safari | <15.2 | 15.2 |
Apple iOS, iPadOS, and watchOS | <15.2 | 15.2 |
Apple iOS, iPadOS, and watchOS | <15.2 | 15.2 |
Apple iOS, iPadOS, and watchOS | <8.3 | 8.3 |
Apple Mobile Safari | <15.2 | |
Apple iOS, iPadOS, and watchOS | <15.2 | |
iStyle @cosme iPhone OS | <15.2 | |
Apple iOS and macOS | >=12.0<12.1 | |
tvOS | <15.2 | |
Apple iOS, iPadOS, and watchOS | <8.3 | |
Fedora | =34 | |
Debian | =10.0 | |
Debian | =11.0 | |
macOS | <12.1 | 12.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-30936 is a vulnerability in WebKit that allows a use after free issue to occur due to inadequate memory management.
CVE-2021-30936 affects the following software: macOS Monterey 12.1, Safari 15.2, iOS 15.2, iPadOS 15.2, watchOS 8.3, and tvOS 15.2.
The severity of CVE-2021-30936 is not specified in the provided information.
To fix CVE-2021-30936, it is recommended to update the affected software to the specified versions.
You can find more information about CVE-2021-30936 on the official Apple support page linked in the references section.