First published: Tue Aug 24 2021(Updated: )
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.1, iOS 15.2 and iPadOS 15.2, macOS Big Sur 11.6.2, Security Update 2021-008 Catalina. Processing a maliciously crafted USD file may disclose memory contents.
Credit: Rui Yang Xingwei Lin Ant Security LightRui Yang Xingwei Lin Ant Security LightRui Yang Xingwei Lin Ant Security LightRui Yang Xingwei Lin Ant Security LightRui Yang Xingwei Lin Ant Security LightRui Yang Xingwei Lin Ant Security LightRui Yang Xingwei Lin Ant Security LightRui Yang Xingwei Lin Ant Security Light cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPadOS | <15.2 | |
Apple iPhone OS | <15.2 | |
Apple Mac OS X | >=10.15<10.15.7 | |
Apple Mac OS X | =10.15.7 | |
Apple Mac OS X | =10.15.7-security_update_2020-001 | |
Apple Mac OS X | =10.15.7-security_update_2021-001 | |
Apple Mac OS X | =10.15.7-security_update_2021-002 | |
Apple Mac OS X | =10.15.7-security_update_2021-003 | |
Apple Mac OS X | =10.15.7-security_update_2021-004 | |
Apple Mac OS X | =10.15.7-security_update_2021-005 | |
Apple Mac OS X | =10.15.7-security_update_2021-006 | |
Apple Mac OS X | =10.15.7-security_update_2021-007 | |
Apple macOS | >=11.0<11.6.2 | |
Apple macOS | >=12.0<12.1 | |
Apple iOS | <15.2 | 15.2 |
Apple iPadOS | <15.2 | 15.2 |
Apple macOS Monterey | <12.1 | 12.1 |
Apple Catalina |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-30940 is a buffer overflow issue in Model I/O that has been fixed with improved memory handling.
CVE-2021-30940 affects Apple iOS up to version 15.2, Apple iPadOS up to version 15.2, Apple macOS Monterey up to version 12.1, and Apple macOS Big Sur up to version 11.6.2.
To fix CVE-2021-30940, update your Apple iOS, iPadOS, macOS Monterey, or macOS Big Sur to the latest available version.
The severity of CVE-2021-30940 is not specified.
You can find more information about CVE-2021-30940 on the Apple support page.