CVE-2021-30954

Related Vulnerabilities: CVE-2021-30954  

A type confusion issue was addressed with improved memory handling. This issue is fixed in tvOS 15.2, macOS Monterey 12.1, Safari 15.2, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Processing maliciously crafted web content may lead to arbitrary code execution.

Description

The MITRE CVE dictionary describes this issue as:

A type confusion issue was addressed with improved memory handling. This issue is fixed in tvOS 15.2, macOS Monterey 12.1, Safari 15.2, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Processing maliciously crafted web content may lead to arbitrary code execution.

Additional Information

  • Bugzilla 2044551: CVE-2021-30954 webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution
  • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion')
  • FAQ: Frequently asked questions about CVE-2021-30954