[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2021-1857Date: (C)2021-05-19   (M)2024-04-16


A memory initialization issue was addressed with improved memory handling. This issue is fixed in iTunes 12.11.3 for Windows, Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iCloud for Windows 12.3, macOS Big Sur 11.3, watchOS 7.4, tvOS 14.5, iOS 14.5 and iPadOS 14.5. Processing maliciously crafted web content may disclose sensitive user information.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V3 Severity:CVSS V2 Severity:
CVSS Score : 6.5CVSS Score : 4.3
Exploit Score: 2.8Exploit Score: 8.6
Impact Score: 3.6Impact Score: 2.9
 
CVSS V3 Metrics:CVSS V2 Metrics:
Attack Vector: NETWORKAccess Vector: NETWORK
Attack Complexity: LOWAccess Complexity: MEDIUM
Privileges Required: NONEAuthentication: NONE
User Interaction: REQUIREDConfidentiality: PARTIAL
Scope: UNCHANGEDIntegrity: NONE
Confidentiality: HIGHAvailability: NONE
Integrity: NONE 
Availability: NONE 
  
Reference:
https://support.apple.com/en-us/HT212317
https://support.apple.com/en-us/HT212319
https://support.apple.com/en-us/HT212321
https://support.apple.com/en-us/HT212323
https://support.apple.com/en-us/HT212324
https://support.apple.com/en-us/HT212325
https://support.apple.com/en-us/HT212326
https://support.apple.com/en-us/HT212327

CPE    5
cpe:/o:apple:mac_os_x:10.15
cpe:/o:apple:mac_os_x:10.14
cpe:/o:apple:mac_os_x:10.15.6:supplemental_update
cpe:/o:apple:mac_os_x:10.15.7:security_update_2020-005
...
CWE    1
CWE-665
OVAL    7
oval:org.secpod.oval:def:71541
oval:org.secpod.oval:def:71510
oval:org.secpod.oval:def:71540
oval:org.secpod.oval:def:71519
...

© SecPod Technologies