Vulnerability Database

290,278

Total vulnerabilities in the database

CVE-2021-1846

Processing a maliciously crafted audio file may disclose restricted memory. This issue is fixed in Security Update 2021-002 Catalina, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. An out-of-bounds read was addressed with improved input validation.

  • Published: Sep 8, 2021
  • Updated: Apr 14, 2023
  • CVE: CVE-2021-1846
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.5
  • AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

CVSS v2:

  • Severity: Low
  • Score: 4.3
  • AV:N/AC:M/Au:N/C:P/I:N/A:N

CWEs:

Software From Fixed in
apple / mac_os_x 10.15 10.15.x
apple / mac_os_x 10.15.7-security_update_2020-005 10.15.7-security_update_2020-005.x
apple / mac_os_x 10.15.7-security_update_2020-007 10.15.7-security_update_2020-007.x
apple / mac_os_x 10.15.7 10.15.7.x
apple / mac_os_x 10.15.7-security_update_2020-001 10.15.7-security_update_2020-001.x
apple / mac_os_x 10.15.6-supplemental_update 10.15.6-supplemental_update.x
apple / mac_os_x 10.15.6 10.15.6.x
apple / mac_os_x 10.15.7-security_update_2020 10.15.7-security_update_2020.x
apple / macos 11.0 11.3
apple / iphone_os - 14.5
apple / mac_os_x 10.15.7-security_update_2021-001 10.15.7-security_update_2021-001.x
apple / tvos - 14.5
apple / mac_os_x 10.15.1 10.15.1.x
apple / mac_os_x 10.15.2 10.15.2.x
apple / mac_os_x 10.15.3 10.15.3.x
apple / mac_os_x 10.15.4 10.15.4.x
apple / mac_os_x 10.15.5 10.15.5.x
apple / watchos - 7.4
apple / ipados - 14.5