CVE-2021-30775: Input Validation
A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 14.7, macOS Big Sur 11.5, watchOS 7.6, tvOS 14.7, Security Update 2021-004 Catalina. Processing a maliciously crafted audio file may lead to arbitrary code execution.
Credit
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-30775?
CVE-2021-30775 is a memory corruption issue in CoreAudio that has been addressed with improved state management.
Which software products are affected by CVE-2021-30775?
CVE-2021-30775 affects Apple watchOS version up to 7.6, Apple tvOS version up to 14.7, Apple Catalina, and Apple macOS Big Sur version up to 11.5.
How can I fix the memory corruption issue addressed in CVE-2021-30775?
To fix the memory corruption issue addressed in CVE-2021-30775, update your Apple watchOS to version 7.6 or later, Apple tvOS to version 14.7 or later, Apple macOS Big Sur to version 11.5 or later, or apply the necessary patches provided by Apple.
Where can I find more information about CVE-2021-30775?
You can find more information about CVE-2021-30775 on the Apple support page: [https://support.apple.com/en-us/HT212605](https://support.apple.com/en-us/HT212605).