9.8
CVSSv3

CVE-2021-1871

CVSSv4: NA | CVSSv3: 9.8 | CVSSv2: 7.5 | VMScore: 1000 | EPSS: 0.00997 | KEV: Exploitation Reported
Published: 02/04/2021 Updated: 21/11/2024

Vulnerability Summary

A security issue exists in WebKitGTK prior to 2.32.0 and WPE WebKit prior to 2.32.0. A remote attacker may be able to cause arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple ipad os

apple iphone os

apple mac os x

apple mac os x 10.15.7

apple macos

debian debian linux 10.0

fedoraproject fedora 33

Vendor Advisories

The following vulnerabilities have been discovered in the webkit2gtk web engine: CVE-2021-1788 Francisco Alonso discovered that processing maliciously crafted web content may lead to arbitrary code execution CVE-2021-1844 Clement Lecigne and Alison Huffman discovered that processing maliciously crafted web content may lead to arbi ...
A security issue was discovered in WebKitGTK before 2320 and WPE WebKit before 2320 A remote attacker may be able to cause arbitrary code execution Apple is aware of a report that this issue may have been actively exploited ...

Mailing Lists

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 APPLE-SA-2021-01-26-1 iOS 144 and iPadOS 144 iOS 144 and iPadOS 144 addresses the following issues Information about the security content is also available at supportapplecom/HT212146 Kernel Available for: iPhone 6s and later, iPad Air 2 and later, iPad mini 4 and later, and iPod to ...
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 APPLE-SA-2021-02-01-2 Additional information for APPLE-SA-2021-01-26-1 iOS 144 and iPadOS 144 iOS 144 and iPadOS 144 addresses the following issues Information about the security content is also available at supportapplecom/HT212146 Analytics Available for: iPhone 6s and later, iPad ...
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 APPLE-SA-2021-02-01-1 macOS Big Sur 112, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave macOS Big Sur 112, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave addresses the following issues Information about the security content is also available at supp ...
------------------------------------------------------------------------ WebKitGTK and WPE WebKit Security Advisory WSA-2021-0003 ------------------------------------------------------------------------ Date reported : March 29, 2021 Advisory ID : WSA-2021-0003 WebKitGTK Advisory URL : webkitgtkorg/s ...

Recent Articles

Apple emits emergency iOS security updates while warning holes may have been exploited in wild by hackers
The Register • Chris Williams, Editor in Chief • 26 Jan 2021

Plus fixes for iPadOS, tvOS, watchOS, XCode, iCloud for Windows – and a day after Google disclosed Nork op

Apple today released software updates to patch vulnerabilities in iPhones and iPads that may have been exploited by miscreants to silently snoop on victims from afar. Folks should check for and install the latest version of their iOS, iPadOS, watchOS, and tvOS software. Here's the quick run down of the programming blunders: CVE-2021-1782: Fixed in iOS 14.4 and iPadOS 14.4, available for iPhone 6s and later, iPad Air 2 and later, iPad mini 4 and later, and iPod touch (7th generation). This kernel...