← Back

CVE-2021-1846

nvd nist
Published: Sep 8, 2021Modified: Nov 21, 2024

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

Processing a maliciously crafted audio file may disclose restricted memory. This issue is fixed in Security Update 2021-002 Catalina, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. An out-of-bounds read was addressed with improved input validation.

Affected (21)

6 products
Ipados
Iphone Os
Mac Os X
Macos
Tvos
Watchos
Configuration A
21 vulnerable
Vulnerable SoftwareAffected Versions
Before 14.5
Before 14.5
Apple
Version 10.15.1
Version 10.15.2
Version 10.15.3
Version 10.15.4
Version 10.15.5
Version 10.15.6
Version 10.15.6
Version 10.15.6 supplemental_update
Version 10.15.7
Version 10.15.7
Version 10.15.7 security_update_2020-001
Version 10.15.7 security_update_2020-005
Version 10.15.7 security_update_2020-007
Version 10.15.7 security_update_2020
Version 10.15.7 security_update_2021-001
Version 10.15
From 11.0 to 11.3
Before 14.5
Before 7.4

References (10)

Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.