
CVE-2021-30743 – Apple macOS ImageIO PICT File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2021-30743
26 May 2021 — An out-of-bounds write was addressed with improved input validation. This issue is fixed in iOS 14.5 and iPadOS 14.5, watchOS 7.4, Security Update 2021-003 Catalina, tvOS 14.5, macOS Big Sur 11.3. Processing a maliciously crafted image may lead to arbitrary code execution. Se abordó una escritura fuera de límites con una comprobación de entrada mejorada. Este problema se corrigió en iOS versión 14.5 e iPadOS versión 14.5, watchOS versión 7.4, Security Update 2021-003 Catalina, tvOS versión 14.5, macOS Big S... • https://support.apple.com/en-us/HT212317 • CWE-787: Out-of-bounds Write •

CVE-2021-30746 – Apple macOS ModelIO USD Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-30746
26 May 2021 — An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6. Processing a maliciously crafted USD file may disclose memory contents. Se abordó una lectura fuera de límites con una comprobación de entrada mejorada. Este problema se corrigió en macOS Big Sur versión 11.4, Security Update 2021-003 Catalina, Security Update 2021-004 Mojave, iOS versión 14.6 e iPadOS ver... • https://support.apple.com/en-us/HT212528 • CWE-125: Out-of-bounds Read •

CVE-2021-30713 – Apple macOS Unspecified Vulnerability
https://notcve.org/view.php?id=CVE-2021-30713
26 May 2021 — A permissions issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.4. A malicious application may be able to bypass Privacy preferences. Apple is aware of a report that this issue may have been actively exploited.. Se abordó un problema de permisos con una comprobación mejorada. • http://seclists.org/fulldisclosure/2021/Sep/40 • CWE-20: Improper Input Validation CWE-862: Missing Authorization •

CVE-2021-30737 – Apple Security Advisory 2021-05-25-1
https://notcve.org/view.php?id=CVE-2021-30737
26 May 2021 — A memory corruption issue in the ASN.1 decoder was addressed by removing the vulnerable code. This issue is fixed in tvOS 14.6, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, iOS 12.5.4, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. Processing a maliciously crafted certificate may lead to arbitrary code execution. Se abordó un problema de corrupción de la memoria en el descodificador ASN.1 mediante la eliminación del código vulnerable. Este problema se corrigió en tvOS vers... • https://support.apple.com/en-us/HT212528 • CWE-787: Out-of-bounds Write •

CVE-2021-1784 – Apple Security Advisory 2021-04-26-2
https://notcve.org/view.php?id=CVE-2021-1784
28 Apr 2021 — A permissions issue existed in DiskArbitration. This was addressed with additional ownership checks. This issue is fixed in macOS Big Sur 11.3, Security Update 2021-002 Catalina, Security Update 2021-003 Mojave. A malicious application may be able to modify protected parts of the file system. Se presentaba un problema de permisos en DiskArbitration. • https://support.apple.com/en-us/HT212325 •

CVE-2021-1808 – Apple Security Advisory 2021-04-26-2
https://notcve.org/view.php?id=CVE-2021-1808
28 Apr 2021 — A memory corruption issue was addressed with improved validation. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. An application may be able to read restricted memory. Se abordó un problema de corrupción de la memoria con una comprobación mejorada. Este problema se corrigió en Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS versión 14.5 e iPadOS versión 14.5, watchOS versi... • https://support.apple.com/en-us/HT212317 • CWE-787: Out-of-bounds Write •

CVE-2021-1809 – Apple Security Advisory 2021-04-26-2
https://notcve.org/view.php?id=CVE-2021-1809
28 Apr 2021 — A memory corruption issue was addressed with improved validation. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. A malicious application may be able to read restricted memory. Se abordó un problema de corrupción de la memoria con una comprobación mejorada. Este problema se corrigió en Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS versión 14.5 e iPadOS versión 14.5, watc... • https://support.apple.com/en-us/HT212317 • CWE-787: Out-of-bounds Write •

CVE-2021-1810 – Apple Security Advisory 2021-04-26-2
https://notcve.org/view.php?id=CVE-2021-1810
28 Apr 2021 — A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.3, Security Update 2021-002 Catalina. A malicious application may bypass Gatekeeper checks. Se abordó un problema lógico con una administración de estado mejorada. Este problema se corrigió en macOS Big Sur versión 11.3, Security Update 2021-002 Catalina. • https://packetstorm.news/files/id/164375 •

CVE-2021-1811 – Apple Security Advisory 2021-04-26-2
https://notcve.org/view.php?id=CVE-2021-1811
28 Apr 2021 — A logic issue was addressed with improved state management. This issue is fixed in iTunes 12.11.3 for Windows, Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iCloud for Windows 12.3, macOS Big Sur 11.3, watchOS 7.4, tvOS 14.5, iOS 14.5 and iPadOS 14.5. Processing a maliciously crafted font may result in the disclosure of process memory. Se abordó un problema lógico con una administración de estado mejorada. Este problema se corrigió en iTunes versión 12.11.3 para Windows, Security Updat... • https://support.apple.com/en-us/HT212317 •

CVE-2021-1813 – Apple Security Advisory 2021-04-26-2
https://notcve.org/view.php?id=CVE-2021-1813
28 Apr 2021 — A validation issue was addressed with improved logic. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. A malicious application may be able to gain root privileges. Se abordó un problema de comprobación con una lógica mejorada. Este problema se corrigió en Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS versión 14.5 e iPadOS versión 14.5, watchOS versión 7.4, tvOS versión 14... • https://support.apple.com/en-us/HT212317 • CWE-269: Improper Privilege Management •