CVE-2021-1801

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/04/2021
Last modified:
07/11/2023

Description

This issue was addressed with improved iframe sandbox enforcement. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Maliciously crafted web content may violate iframe sandboxing policy.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:* 14.4 (excluding)
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* 14.4 (excluding)
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* 11.0.1 (including) 11.2 (excluding)
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* 14.4 (excluding)
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* 7.3 (excluding)
cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:*
cpe:2.3:a:webkitgtk:webkitgtk:*:*:*:*:*:*:*:* 2.30.6 (excluding)