CVE-2021-1754: High severity tvos vulnerability
ImageIO. This issue was addressed with improved checks.
Other sources
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution.
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2021-1761
- CVE-2021-1797
- CVE-2021-1760
- CVE-2021-1747
- CVE-2021-1776
- CVE-2021-1759
- CVE-2021-1772
- CVE-2021-1792
- CVE-2021-1786
- CVE-2021-1787
- CVE-2021-1791
- CVE-2021-1758
- CVE-2021-1818
- CVE-2021-1766
- CVE-2021-1785
- CVE-2021-1744
- CVE-2021-1742
- CVE-2021-1746
- CVE-2021-1754
- CVE-2021-1774
- CVE-2021-1777
- CVE-2021-1793
- CVE-2021-1773
- CVE-2021-1741
- CVE-2021-1743
- CVE-2021-1778
- CVE-2021-1783
- CVE-2021-1757
- CVE-2021-1748
- CVE-2021-1764
- CVE-2021-1750
- CVE-2021-1782
- CVE-2021-1769
- CVE-2021-1788
- CVE-2021-1789
- CVE-2021-1801
- CVE-2021-1799
- CVE-2020-27945
- CVE-2020-27937
- CVE-2021-1802
- CVE-2021-1790
- CVE-2021-1775
- CVE-2020-29608
- CVE-2021-1736
- CVE-2021-1737
- CVE-2021-1738
- CVE-2021-1779
- CVE-2020-27904
- CVE-2020-29633
- CVE-2021-1781
- CVE-2021-1771
- CVE-2021-1762
- CVE-2020-29614
- CVE-2021-1763
- CVE-2021-1767
- CVE-2021-1745
- CVE-2021-1753
- CVE-2021-1768
- CVE-2021-1751
- CVE-2020-25709
- CVE-2020-27938
- CVE-2019-20838
- CVE-2020-14155
- CVE-2020-15358
- CVE-2021-1765
- CVE-2021-1871
- CVE-2021-1870
- CVE-2021-30869
- CVE-2021-1794
- CVE-2021-1795
- CVE-2021-1796
- CVE-2021-1780
- CVE-2021-1838
- CVE-2021-1756
Frequently Asked Questions
What is CVE-2021-1754?
CVE-2021-1754 is a vulnerability in ImageIO that allows for arbitrary code execution.
How does CVE-2021-1754 impact macOS Big Sur?
CVE-2021-1754 affects macOS Big Sur version 11.2 and below, allowing for arbitrary code execution.
How does CVE-2021-1754 impact watchOS?
CVE-2021-1754 affects watchOS version 7.3 and below, allowing for arbitrary code execution.
How do I fix CVE-2021-1754 on macOS Big Sur?
To fix CVE-2021-1754 on macOS Big Sur, update to version 11.3 or later.
How do I fix CVE-2021-1754 on watchOS?
To fix CVE-2021-1754 on watchOS, update to version 7.4 or later.