CVE-2021-30926
https://notcve.org/view.php?id=CVE-2021-30926
Description: A memory corruption issue in the processing of ICC profiles was addressed with improved input validation. This issue is fixed in macOS Monterey 12.1, watchOS 8.3, iOS 15.2 and iPadOS 15.2, tvOS 15.2. Processing a maliciously crafted image may lead to arbitrary code execution. Descripción: Se solucionó un problema de corrupción de memoria en el procesamiento de perfiles ICC con una comprobación de entrada mejorada. Este problema se solucionó en macOS Monterey versión 12.1, watchOS versión 8.3, iOS versión 15.2 e iPadOS versión 15.2, tvOS versión 15.2. • https://support.apple.com/en-us/HT212975 https://support.apple.com/en-us/HT212976 https://support.apple.com/en-us/HT212978 https://support.apple.com/en-us/HT212980 https://support.apple.com/kb/HT212868 https://support.apple.com/kb/HT212871 https://support.apple.com/kb/HT212872 • CWE-787: Out-of-bounds Write •
CVE-2021-30925
https://notcve.org/view.php?id=CVE-2021-30925
The issue was addressed with improved permissions logic. This issue is fixed in watchOS 8, macOS Big Sur 11.6, iOS 15 and iPadOS 15. A malicious application may be able to bypass Privacy preferences. El problema se ha solucionado con una lógica de permisos mejorada. Este problema se ha solucionado en watchOS 8, macOS Big Sur 11.6, iOS 15 y iPadOS 15. • https://support.apple.com/en-us/HT212804 https://support.apple.com/en-us/HT212814 https://support.apple.com/en-us/HT212819 • CWE-863: Incorrect Authorization •
CVE-2021-30924
https://notcve.org/view.php?id=CVE-2021-30924
A denial of service issue was addressed with improved state handling. This issue is fixed in macOS Monterey 12.0.1. A remote attacker can cause a device to unexpectedly restart. Se solucionó un problema de denegación de servicio mejorando el manejo estatal. Este problema se solucionó en macOS Monterey versión 12.0.1. • https://support.apple.com/en-us/HT212869 https://support.apple.com/kb/HT212867 https://support.apple.com/kb/HT212874 https://support.apple.com/kb/HT212876 •
CVE-2021-30923
https://notcve.org/view.php?id=CVE-2021-30923
A race condition was addressed with improved locking. This issue is fixed in macOS Monterey 12.0.1. A malicious application may be able to execute arbitrary code with kernel privileges. Se solucionó una condición de carrera con un bloqueo mejorado. Este problema se solucionó en macOS Monterey versión 12.0.1. • https://support.apple.com/en-us/HT212869 https://support.apple.com/kb/HT212867 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •
CVE-2021-30921
https://notcve.org/view.php?id=CVE-2021-30921
A logic issue was addressed with improved state management. This issue is fixed in iOS 14.5 and iPadOS 14.5. A user's password may be visible onscreen. Se ha solucionado un problema de lógica con la mejora de la gestión de estados. Este problema se ha solucionado en iOS 14.5 y iPadOS 14.5. • https://support.apple.com/en-us/HT212317 • CWE-668: Exposure of Resource to Wrong Sphere •