CVE-2021-30847
CVE-2021-30847
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 2.9%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
19 Oct 2021Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
This issue was addressed with improved checks. This issue is fixed in watchOS 8, macOS Big Sur 11.6, Security Update 2021-005 Catalina, tvOS 15, iOS 15 and iPadOS 15, iTunes 12.12 for Windows. Processing a maliciously crafted image may lead to arbitrary code execution.
Affected products
Apple · macOSWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://seclists.org/fulldisclosure/2021/Oct/61http://seclists.org/fulldisclosure/2021/Oct/62http://seclists.org/fulldisclosure/2021/Oct/63https://support.apple.com/en-us/HT212804https://support.apple.com/en-us/HT212805https://support.apple.com/en-us/HT212814https://support.apple.com/en-us/HT212815https://support.apple.com/en-us/HT212817https://support.apple.com/en-us/HT212819https://support.apple.com/kb/HT212807https://support.apple.com/kb/HT212953