First published: Tue Aug 24 2021(Updated: )
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.1, iOS 15.2 and iPadOS 15.2, macOS Big Sur 11.6.2, Security Update 2021-008 Catalina. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.
Credit: Ye Zhang @co0py_Cat Baidu SecurityYe Zhang @co0py_Cat Baidu SecurityYe Zhang @co0py_Cat Baidu SecurityYe Zhang @co0py_Cat Baidu Security cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS Big Sur | <11.6.2 | 11.6.2 |
Apple iOS | <15.2 | 15.2 |
Apple iPadOS | <15.2 | 15.2 |
Apple macOS Monterey | <12.1 | 12.1 |
Apple Catalina | ||
Apple iPadOS | <15.2 | |
Apple iPhone OS | <15.2 | |
Apple Mac OS X | >=10.15<=10.15.7 | |
Apple Mac OS X | =10.15.7-security_update_2020-001 | |
Apple Mac OS X | =10.15.7-security_update_2021-001 | |
Apple Mac OS X | =10.15.7-security_update_2021-002 | |
Apple Mac OS X | =10.15.7-security_update_2021-003 | |
Apple Mac OS X | =10.15.7-security_update_2021-004 | |
Apple Mac OS X | =10.15.7-security_update_2021-005 | |
Apple Mac OS X | =10.15.7-security_update_2021-006 | |
Apple Mac OS X | =10.15.7-security_update_2021-007 | |
Apple macOS | >=11.0<11.6.2 | |
Apple macOS | >=12.0<12.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-30971 is a vulnerability in Model I/O that allows for an out-of-bounds write issue, which has been addressed with improved bounds checking.
CVE-2021-30971 affects Apple iOS versions up to and excluding 15.2, Apple iPadOS versions up to and excluding 15.2, Apple macOS Monterey up to and excluding 12.1, Apple macOS Big Sur up to and excluding 11.6.2, and Apple Catalina.
To fix CVE-2021-30971, make sure to update your software to the latest version. For Apple iOS, update to version 15.2 or later. For Apple iPadOS, update to version 15.2 or later. For Apple macOS Monterey, update to version 12.1 or later. For Apple macOS Big Sur, update to version 11.6.2 or later.
You can find more information about CVE-2021-30971 on the Apple support website at the following links: [Link1](https://support.apple.com/en-us/HT212978), [Link2](https://support.apple.com/en-us/HT212979), [Link3](https://support.apple.com/en-us/HT212976).