CVE-2021-30871: Input Validation
Published Jul 19, 2021
·Updated
ActionKit. An input validation issue was addressed with improved input validation.
Credit
Denis Tokarev@@illusionofcha0s, Zachary Keffaber@@QuickUpdate5, tr3e, George Nosenko, JunDong Xie(Ant Security Light), ryuzaki, Mickey Jin@@patch1t(Trend Micro), Sunglin(Knownsec 404 team), Yizhuo Wang(Group of Software Security In Progress), Tim Michaud@@TimGMichaud(Zoom Video Communications), Linus Henze (pinauten.de), Csaba Fitzl@@theevilbit(Offensive Security), tr3e(Trend Micro Zero Day Initiative), hjy79425575(Trend Micro Zero Day Initiative), Matthew Denton(Google Chrome Security), Jzhu(Baidu Security), Ye Zhang@@co0py_Cat(Baidu Security), CFF(Topsec Alpha Team), CVE-2021-3518, CVE-2018-25010, CVE-2018-25011, CVE-2018-25014, CVE-2020-36328, CVE-2020-36329, CVE-2020-36330, CVE-2020-36331, Anonymous(Trend Micro Zero Day Initiative), Christoph Guttandin(Media Codings), Sergei Glazunov(Google Project Zero), Ivan Fratric(Google Project Zero), vm_call, Nozhdar Abdulkhaleq Shukri, Mickey Jin@@patch1t(Trend Micro working with Trend Micro Zero Day Initiative), Georgi Valkov (httpstorm.com), Zhongcheng Li (CK01), Ron Waisberg@@epsilan, Gary Nield(ECSC Group plc), Wojciech Reguła@@_r3ggi(SecuRing), Matt Shockley (twitter.com/mattshockl)(Offensive Security), Liu Long(Ant Security Light), Yinyi Wu@@3ndy1(Qihoo 360 Vulcan Team), Zuozhi Fan@@pattern_F_(Ant Security TianQiong Lab), ABC Research s.r.o
Affected Software
8 affected componentsFixes available
Apple macOS Big Sur<11.5
11.5
Apple tvOS<14.7
14.7
Apple WatchOS<7.6
7.6
Apple iPhone OS<14.7
Apple macOS<11.5
Apple WatchOS<7.6
Apple iOS<14.7
14.7
Apple iPadOS<14.7
14.7
Event History
Jul 19, 2021
Data Sourced
via Apple·12:00 AM
DescriptionWeaknessAffected Software
Updated
via Apple·12:00 AM
Affected Software
Updated
via Apple·12:00 AM
DescriptionWeaknessAffected Software
Jul 21, 2021
Updated
via Apple·12:00 AM
DescriptionWeaknessAffected Software
Updated
via Apple·12:00 AM
Affected Software
Aug 24, 2021
CVE Published
via MITRE·06:49 PM
Data Sourced
via MITRE·06:49 PM
DescriptionWeakness
Feb 24, 2026
Updated
via Apple·07:00 PM
DescriptionWeaknessAffected Software
Updated
via Apple·07:00 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-30871.
2
What is the severity of CVE-2021-30871?
The severity of CVE-2021-30871 has not been disclosed.
3
Which software versions are affected by CVE-2021-30871?
Affected software versions include watchOS up to 7.6, tvOS up to 14.7, and macOS Big Sur up to 11.5.
4
What is the description of CVE-2021-30871?
CVE-2021-30871 is a logic issue that was addressed with improved restrictions.
5
How can I fix CVE-2021-30871?
To fix CVE-2021-30871, update your software to the latest available version provided by Apple.