Description
A memory corruption issue in the ASN.1 decoder was addressed by removing the vulnerable code. This issue is fixed in tvOS 14.6, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, iOS 12.5.4, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. Processing a maliciously crafted certificate may lead to arbitrary code execution.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-17654 | A memory corruption issue in the ASN.1 decoder was addressed by removing the vulnerable code. This issue is fixed in tvOS 14.6, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, iOS 12.5.4, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. Processing a maliciously crafted certificate may lead to arbitrary code execution. |
References
History
No history.
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2024-08-03T22:40:32.125Z
Reserved: 2021-04-13T00:00:00.000Z
Link: CVE-2021-30737
No data.
Status : Modified
Published: 2021-09-08T14:15:09.337
Modified: 2024-11-21T06:04:36.940
Link: CVE-2021-30737
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD