CVE-2021-1870
02.04.2021, 19:15
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, iOS 14.4 and iPadOS 14.4. A remote attacker may be able to cause arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited..Enginsight
Vendor | Product | Version |
---|---|---|
apple | ipados | 𝑥 < 14.4 |
apple | iphone_os | 𝑥 < 14.4 |
apple | mac_os_x | 10.15 ≤ 𝑥 < 10.15.7 |
apple | mac_os_x | 10.15.7 |
apple | mac_os_x | 10.15.7:security_update_2020-001 |
apple | mac_os_x | 10.15.7:supplemental_update |
apple | macos | 11.0.1 ≤ 𝑥 < 11.2 |
webkitgtk | webkitgtk | 𝑥 < 2.30.6 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
webkit2gtk |
| ||||||||||||||
wpewebkit |
|

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
qtwebkit-opensource-src |
| ||||||||||||||||||||||||
qtwebkit-source |
| ||||||||||||||||||||||||
webkit2gtk |
| ||||||||||||||||||||||||
webkitgtk |
| ||||||||||||||||||||||||
wpewebkit |
|
References