CVE-2021-30769

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
08/09/2021
Last modified:
15/09/2021

Description

A logic issue was addressed with improved state management. This issue is fixed in iOS 14.7, tvOS 14.7, watchOS 7.6. A malicious attacker with arbitrary read and write capability may be able to bypass Pointer Authentication.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* 14.7 (excluding)
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* 14.7 (excluding)
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* 7.6 (excluding)