CVE Feed

    Dashboard / CVE

    —
    Unknown

    CVE-2021-31017

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by the CVE program. Notes: none

    Published: 24 Aug 2021
    —
    Unknown

    CVE-2021-31016

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by the CVE program. Notes: none

    Published: 24 Aug 2021
    —
    Unknown

    CVE-2021-31015

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by the CVE program. Notes: none

    Published: 24 Aug 2021
    —
    Unknown

    CVE-2021-31014

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by the CVE program. Notes: none

    Published: 24 Aug 2021
    5.5
    Medium

    CVE-2021-31013

    Last Modified: 21 Nov 2024

    An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.1, iOS 15.2 and iPadOS 15.2, macOS Big Sur 11.6.2. Processing a maliciously crafted font may result in the disclosure of process memory.

    Published: 24 Aug 2021
    —
    Unknown

    CVE-2021-31012

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by the CVE program. Notes: none

    Published: 24 Aug 2021
    —
    Unknown

    CVE-2021-31011

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by the CVE program. Notes: none

    Published: 24 Aug 2021
    7.5
    High

    CVE-2021-31010

    Last Modified: 23 Oct 2025

    A deserialization issue was addressed through improved validation. This issue is fixed in Security Update 2021-005 Catalina, iOS 12.5.5, iOS 14.8 and iPadOS 14.8, macOS Big Sur 11.6, watchOS 7.6.2. A sandboxed process may be able to circumvent sandbox restrictions. Apple was aware of a report that this issue may have been actively exploited at the time of release..

    Published: 24 Aug 2021
    9.8
    Critical

    CVE-2021-31009

    Last Modified: 21 Nov 2024

    Multiple issues were addressed by removing HDF5. This issue is fixed in iOS 15.2 and iPadOS 15.2, macOS Monterey 12.1. Multiple issues in HDF5.

    Published: 24 Aug 2021
    8.8
    High

    CVE-2021-31008

    Last Modified: 21 Nov 2024

    A type confusion issue was addressed with improved memory handling. This issue is fixed in Safari 15.1, tvOS 15.1, iOS 15 and iPadOS 15, macOS Monterey 12.0.1, watchOS 8.1. Processing maliciously crafted web content may lead to code execution.

    Published: 24 Aug 2021
    5.5
    Medium

    CVE-2021-31007

    Last Modified: 21 Nov 2024

    Description: A permissions issue was addressed with improved validation. This issue is fixed in iOS 15.1 and iPadOS 15.1, tvOS 15.1, macOS Big Sur 11.6.2, watchOS 8.1, macOS Monterey 12.1. A malicious application may be able to bypass Privacy preferences.

    Published: 24 Aug 2021
    5.5
    Medium

    CVE-2021-31006

    Last Modified: 21 Nov 2024

    Description: A permissions issue was addressed with improved validation. This issue is fixed in watchOS 7.6, tvOS 14.7, macOS Big Sur 11.5. A malicious application may be able to bypass certain Privacy preferences.

    Published: 24 Aug 2021
    7.5
    High

    CVE-2021-31005

    Last Modified: 21 Nov 2024

    Description: A logic issue was addressed with improved state management. This issue is fixed in iOS 15 and iPadOS 15, macOS Monterey 12.0.1. Turning off "Block all remote content" may not apply to all remote content types.

    Published: 24 Aug 2021
    7
    High

    CVE-2021-31004

    Last Modified: 21 Nov 2024

    A race condition was addressed with improved locking. This issue is fixed in macOS Monterey 12.0.1, macOS Big Sur 11.5. An application may be able to gain elevated privileges.

    Published: 24 Aug 2021
    —
    Unknown

    CVE-2021-31003

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by the CVE program. Notes: none

    Published: 24 Aug 2021
    7.8
    High

    CVE-2021-31002

    Last Modified: 21 Nov 2024

    An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Monterey 12.0.1, macOS Big Sur 11.6.2. A malicious application may be able to execute arbitrary code with system privileges.

    Published: 24 Aug 2021
    6.5
    Medium

    CVE-2021-31001

    Last Modified: 21 Nov 2024

    An access issue was addressed with improved access restrictions. This issue is fixed in iOS 15 and iPadOS 15. An attacker in a privileged network position may be able to leak sensitive user information.

    Published: 24 Aug 2021
    3.3
    Low

    CVE-2021-31000

    Last Modified: 21 Nov 2024

    A permissions issue was addressed with improved validation. This issue is fixed in iOS 15.2 and iPadOS 15.2, watchOS 8.3, macOS Monterey 12.1, tvOS 15.2. A malicious application may be able to read sensitive contact information.

    Published: 24 Aug 2021
    4.3
    Medium

    CVE-2021-30999

    Last Modified: 21 Nov 2024

    The issue was addressed with improved permissions logic. This issue is fixed in iOS 14.6 and iPadOS 14.6. A user may be unable to fully delete browsing history.

    Published: 24 Aug 2021
    5.3
    Medium

    CVE-2021-30998

    Last Modified: 21 Nov 2024

    A S/MIME issue existed in the handling of encrypted email. This issue was addressed with improved selection of the encryption certificate. This issue is fixed in iOS 15.2 and iPadOS 15.2. A sender's email address may be leaked when sending an S/MIME encrypted email using a certificate with more than one email address.

    Published: 24 Aug 2021
    7.5
    High

    CVE-2021-30997

    Last Modified: 21 Nov 2024

    A S/MIME issue existed in the handling of encrypted email. This issue was addressed by not automatically loading some MIME parts. This issue is fixed in iOS 15.2 and iPadOS 15.2. An attacker may be able to recover plaintext contents of an S/MIME-encrypted e-mail.

    Published: 24 Aug 2021
    7
    High

    CVE-2021-30996

    Last Modified: 21 Nov 2024

    A race condition was addressed with improved state handling. This issue is fixed in macOS Monterey 12.1, iOS 15.2 and iPadOS 15.2. A malicious application may be able to execute arbitrary code with kernel privileges.

    Published: 24 Aug 2021
    7
    High

    CVE-2021-30995

    Last Modified: 21 Nov 2024

    A race condition was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.6.2, tvOS 15.2, macOS Monterey 12.1, Security Update 2021-008 Catalina, iOS 15.2 and iPadOS 15.2, watchOS 8.3. A malicious application may be able to elevate privileges.

    Published: 24 Aug 2021
    3.3
    Low

    CVE-2021-30994

    Last Modified: 21 Nov 2024

    An access issue was addressed with improved access restrictions. This issue is fixed in macOS Monterey 12.0.1. A malicious application may be able to access local users' Apple IDs.

    Published: 24 Aug 2021
    8.1
    High

    CVE-2021-30993

    Last Modified: 21 Nov 2024

    A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.1, watchOS 8.3, iOS 15.2 and iPadOS 15.2, tvOS 15.2. An attacker in a privileged network position may be able to execute arbitrary code.

    Published: 24 Aug 2021
    5.5
    Medium

    CVE-2021-30992

    Last Modified: 21 Nov 2024

    This issue was addressed with improved handling of file metadata. This issue is fixed in iOS 15.2 and iPadOS 15.2. A user in a FaceTime call may unexpectedly leak sensitive user information through Live Photos metadata.

    Published: 24 Aug 2021
    7.8
    High

    CVE-2021-30991

    Last Modified: 21 Nov 2024

    An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 15.2 and iPadOS 15.2. A malicious application may be able to execute arbitrary code with kernel privileges.

    Published: 24 Aug 2021
    5.5
    Medium

    CVE-2021-30990

    Last Modified: 21 Nov 2024

    A logic issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.1, Security Update 2021-008 Catalina, macOS Big Sur 11.6.2. A malicious application may bypass Gatekeeper checks.

    Published: 24 Aug 2021
    —
    Unknown

    CVE-2021-30989

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by the CVE program. Notes: none

    Published: 24 Aug 2021
    5.5
    Medium

    CVE-2021-30988

    Last Modified: 21 Nov 2024

    Description: A permissions issue was addressed with improved validation. This issue is fixed in iOS 15.2 and iPadOS 15.2. A malicious application may be able to identify what other applications a user has installed.

    Published: 24 Aug 2021
    5.5
    Medium

    CVE-2021-30987

    Last Modified: 21 Nov 2024

    An access issue was addressed with improved access restrictions. This issue is fixed in macOS Monterey 12.1. A device may be passively tracked via BSSIDs.

    Published: 24 Aug 2021
    5.5
    Medium

    CVE-2021-30986

    Last Modified: 21 Nov 2024

    A device configuration issue was addressed with an updated configuration. This issue is fixed in macOS Monterey 12.1. A device may be passively tracked by its Bluetooth MAC address.

    Published: 24 Aug 2021
    7.8
    High

    CVE-2021-30985

    Last Modified: 21 Nov 2024

    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 15.2 and iPadOS 15.2. A malicious application may be able to execute arbitrary code with kernel privileges.

    Published: 24 Aug 2021
    7.5
    High

    CVE-2021-30984

    Last Modified: 21 Nov 2024

    A race condition was addressed with improved state handling. This issue is fixed in tvOS 15.2, macOS Monterey 12.1, Safari 15.2, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Processing maliciously crafted web content may lead to arbitrary code execution.

    Published: 24 Aug 2021
    7.8
    High

    CVE-2021-30983

    Last Modified: 23 Oct 2025

    A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 15.2 and iPadOS 15.2. An application may be able to execute arbitrary code with kernel privileges.

    Published: 24 Aug 2021
    5.9
    Medium

    CVE-2021-30982

    Last Modified: 21 Nov 2024

    A race condition was addressed with improved locking. This issue is fixed in macOS Monterey 12.1, Security Update 2021-008 Catalina, macOS Big Sur 11.6.2. A remote attacker may be able to cause unexpected application termination or heap corruption.

    Published: 24 Aug 2021
    7.8
    High

    CVE-2021-30981

    Last Modified: 21 Nov 2024

    A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.1, Security Update 2021-008 Catalina, macOS Big Sur 11.6.2. An application may be able to execute arbitrary code with kernel privileges.

    Published: 24 Aug 2021
    7.8
    High

    CVE-2021-30980

    Last Modified: 21 Nov 2024

    A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.6.2, tvOS 15.2, macOS Monterey 12.1, Security Update 2021-008 Catalina, iOS 15.2 and iPadOS 15.2, watchOS 8.3. An application may be able to execute arbitrary code with kernel privileges.

    Published: 24 Aug 2021
    7.8
    High

    CVE-2021-30979

    Last Modified: 21 Nov 2024

    A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.1, iOS 15.2 and iPadOS 15.2, macOS Big Sur 11.6.2, Security Update 2021-008 Catalina. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.

    Published: 24 Aug 2021
    7.8
    High

    CVE-2021-30977

    Last Modified: 21 Nov 2024

    A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.1, Security Update 2021-008 Catalina, macOS Big Sur 11.6.2. A malicious application may be able to execute arbitrary code with kernel privileges.

    Published: 24 Aug 2021
    —
    Unknown

    CVE-2021-30978

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by the CVE program. Notes: none

    Published: 24 Aug 2021
    5.5
    Medium

    CVE-2021-30976

    Last Modified: 21 Nov 2024

    A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.1, Security Update 2021-008 Catalina, macOS Big Sur 11.6.2. A malicious application may bypass Gatekeeper checks.

    Published: 24 Aug 2021
    8.6
    High

    CVE-2021-30975

    Last Modified: 21 Nov 2024

    This issue was addressed by disabling execution of JavaScript when viewing a scripting dictionary. This issue is fixed in macOS Monterey 12.1, Security Update 2021-008 Catalina, macOS Big Sur 11.6.2. A malicious OSAX scripting addition may bypass Gatekeeper checks and circumvent sandbox restrictions.

    Published: 24 Aug 2021
    —
    Unknown

    CVE-2021-30974

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by the CVE program. Notes: none

    Published: 24 Aug 2021
    5.5
    Medium

    CVE-2021-30973

    Last Modified: 21 Nov 2024

    An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Monterey 12.1, iOS 15.2 and iPadOS 15.2, macOS Big Sur 11.6.2, Security Update 2021-008 Catalina. Processing a maliciously crafted file may disclose user information.

    Published: 24 Aug 2021
    5.5
    Medium

    CVE-2021-30972

    Last Modified: 21 Nov 2024

    This issue was addressed with improved checks. This issue is fixed in Security Update 2022-001 Catalina, macOS Big Sur 11.6.3. A malicious application may be able to bypass certain Privacy preferences.

    Published: 24 Aug 2021
    7.8
    High

    CVE-2021-30971

    Last Modified: 21 Nov 2024

    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.1, iOS 15.2 and iPadOS 15.2, macOS Big Sur 11.6.2, Security Update 2021-008 Catalina. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.

    Published: 24 Aug 2021
    5.5
    Medium

    CVE-2021-30970

    Last Modified: 21 Nov 2024

    A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.1, macOS Big Sur 11.6.2. A malicious application may be able to bypass Privacy preferences.

    Published: 24 Aug 2021
    7.8
    High

    CVE-2021-30969

    Last Modified: 21 Nov 2024

    A path handling issue was addressed with improved validation. This issue is fixed in Security Update 2021-008 Catalina, macOS Big Sur 11.6.2. Processing a maliciously crafted URL may cause unexpected JavaScript execution from a file on disk.

    Published: 24 Aug 2021
    5.5
    Medium

    CVE-2021-30968

    Last Modified: 21 Nov 2024

    A validation issue related to hard link behavior was addressed with improved sandbox restrictions. This issue is fixed in macOS Big Sur 11.6.2, tvOS 15.2, macOS Monterey 12.1, Security Update 2021-008 Catalina, iOS 15.2 and iPadOS 15.2, watchOS 8.3. A malicious application may be able to bypass certain Privacy preferences.

    Published: 24 Aug 2021