CVE-2021-30888: High severity Apple tvOS vulnerability
A flaw was found in WebKitGTK. An information leakage issue was addressed.
References: https://webkitgtk.org/security/WSA-2021-0007.html https://www.openwall.com/lists/oss-security/2021/12/20/6
Other sources
An information leakage issue was addressed. This issue is fixed in iOS 15.1 and iPadOS 15.1, macOS Monterey 12.0.1, iOS 14.8.1 and iPadOS 14.8.1, tvOS 15.1, watchOS 8.1. A malicious website using Content Security Policy reports may be able to leak information via redirect behavior .
— MITRE
WebKit. An information leakage issue was addressed.
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2021-30907
- CVE-2021-30917
- CVE-2021-30903
- CVE-2021-30905
- CVE-2021-30919
- CVE-2021-31007
- CVE-2021-30881
- CVE-2021-30895
- CVE-2021-30896
- CVE-2021-30906
- CVE-2021-30894
- CVE-2021-30883
- CVE-2021-30924
- CVE-2021-30886
- CVE-2021-30909
- CVE-2021-30910
- CVE-2021-30915
- CVE-2021-31008
- CVE-2021-30887
- CVE-2021-30888
- CVE-2021-30889
- CVE-2021-30890
- CVE-2021-30873
- CVE-2021-30876
- CVE-2021-30879
- CVE-2021-30877
- CVE-2021-30880
- CVE-2021-30994
- CVE-2021-30899
- CVE-2021-30931
- CVE-2021-30866
- CVE-2020-9846
- CVE-2021-30923
- CVE-2021-30831
- CVE-2021-30840
- CVE-2021-30852
- CVE-2021-30933
- CVE-2021-30867
- CVE-2021-30814
- CVE-2021-30922
- CVE-2021-30824
- CVE-2021-30901
- CVE-2021-30821
- CVE-2021-30916
- CVE-2021-30864
- CVE-2021-30813
- CVE-2021-31011
- CVE-2021-30904
- CVE-2021-30911
- CVE-2021-30874
- CVE-2021-30808
- CVE-2021-30920
- CVE-2021-31004
- CVE-2021-31002
- CVE-2021-30868
- CVE-2021-30912
- CVE-2021-30913
- CVE-2021-31005
- CVE-2021-30897
- CVE-2021-30884
- CVE-2021-30818
- CVE-2021-30836
- CVE-2021-30846
- CVE-2021-30849
- CVE-2021-30848
- CVE-2021-30851
- CVE-2021-30809
- CVE-2021-30823
- CVE-2021-30861
- CVE-2021-30930
- CVE-2021-30908
- CVE-2021-30833
- CVE-2021-30892
- CVE-2021-30926
- CVE-2021-30900
- CVE-2021-30918
- CVE-2021-30902
- CVE-2021-30914
- CVE-2021-30875
Frequently Asked Questions
What is CVE-2021-30888?
CVE-2021-30888 is an information leakage issue in WebKit that has been addressed.
Which software products are affected by CVE-2021-30888?
CVE-2021-30888 affects multiple Apple software products including Safari, iOS, iPadOS, macOS Monterey, tvOS, and watchOS.
What versions of Safari are affected by CVE-2021-30888?
Safari versions up to and excluding 15.1 are affected by CVE-2021-30888.
How can I fix CVE-2021-30888?
To fix CVE-2021-30888, update your affected Apple software products to the latest available versions.
Where can I find more information about CVE-2021-30888?
You can find more information about CVE-2021-30888 on the Apple support website.