CVE-2021-1864: Use After Free
iTunes Store. A use after free issue was addressed with improved memory management.
Other sources
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. An attacker with JavaScript execution may be able to execute arbitrary code.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2021-1849
- CVE-2021-1836
- CVE-2021-1808
- CVE-2021-1857
- CVE-2021-30752
- CVE-2021-1846
- CVE-2021-1809
- CVE-2021-30664
- CVE-2021-1811
- CVE-2021-1881
- CVE-2021-1882
- CVE-2021-1813
- CVE-2021-1883
- CVE-2021-1884
- CVE-2021-1885
- CVE-2021-30653
- CVE-2021-1843
- CVE-2021-1858
- CVE-2021-30743
- CVE-2021-30764
- CVE-2021-1864
- CVE-2021-1860
- CVE-2021-1816
- CVE-2021-1851
- CVE-2021-1832
- CVE-2021-30660
- CVE-2021-30652
- CVE-2021-1875
- CVE-2021-1822
- CVE-2021-1815
- CVE-2021-1739
- CVE-2021-1740
- CVE-2021-1868
- CVE-2021-1844
- CVE-2021-1825
- CVE-2021-1817
- CVE-2021-1826
- CVE-2021-1820
- CVE-2021-30661
- CVE-2020-7463
- CVE-2021-1770
- CVE-2021-30659
- CVE-2021-1872
- CVE-2021-1880
- CVE-2021-1814
- CVE-2021-1807
- CVE-2021-1835
- CVE-2021-1837
- CVE-2021-1867
- CVE-2021-30742
- CVE-2021-1812
- CVE-2021-30656
- CVE-2021-30662
- CVE-2021-1877
- CVE-2021-1852
- CVE-2021-1830
- CVE-2021-1874
- CVE-2021-1833
- CVE-2021-1865
- CVE-2021-1863
- CVE-2021-1831
- CVE-2021-1862
- CVE-2021-1854
- CVE-2021-30921
- CVE-2021-1848
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-1864.
What is the title of this vulnerability?
The title of this vulnerability is 'iTunes Store. A use after free issue was addressed with improved memory management.'
What is the severity level of CVE-2021-1864?
The severity level of CVE-2021-1864 has not been specified.
What software is affected by CVE-2021-1864?
The affected software includes Apple iOS versions up to and excluding 14.5, Apple iPadOS versions up to and excluding 14.5, Apple watchOS versions up to and excluding 7.4, and Apple tvOS versions up to and excluding 14.5.
How can I fix CVE-2021-1864?
To fix CVE-2021-1864, users should update their Apple devices to the recommended versions: iOS 14.5, iPadOS 14.5, watchOS 7.4, and tvOS 14.5.