← All CVEs

CVE-2021-30937

high · 7.8

A memory corruption vulnerability was addressed with improved locking. This issue is fixed in macOS Big Sur 11.6.2, tvOS 15.2, macOS Monterey 12.1, Security Update 2021-008 Catalina, iOS 15.2 and iPadOS 15.2, watchOS 8.3. A malicious application may be able to execute arbitrary code with kernel privileges.

7.8
CVSS
17.3%
EPSS (exploit prob.)
97th
EPSS percentile
2021-08-24
Published

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Weaknesses

CWE-787

Affected products

VendorProductAffected versions
appleipados< 15.2
appleiphone_os< 15.2
applemac_os_x>= 10.15, <= 10.15.7
applemac_os_x10.15.7
applemac_os_x10.15.7
applemac_os_x10.15.7
applemac_os_x10.15.7
applemac_os_x10.15.7
applemac_os_x10.15.7
applemac_os_x10.15.7
applemac_os_x10.15.7
applemac_os_x10.15.7
applemacos>= 11.0, < 11.6.2
applemacos>= 12.0, < 12.1
appletvos< 15.2
applewatchos< 8.3

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2021-30937