CyberSec.Space Logo
CVEブラウザに戻る

CVE-2021-30860

Known Exploited (CISA KEV)HIGH
7.8
CVSS Severity Score
EPSS Score62.9780%
EPSS Percentile90.20th
Published2021年8月24日
Last Modified2025年10月27日

Vulnerability Description

An integer overflow was addressed with improved input validation. This issue is fixed in Security Update 2021-005 Catalina, iOS 14.8 and iPadOS 14.8, macOS Big Sur 11.6, watchOS 7.6.2. Processing a maliciously crafted PDF may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.

Affected Platforms (CPE)

💻
Apple

Ipados

< 14.8
💻
Apple

Iphone Os

< 12.5.5
💻
Apple

Iphone Os

>= 13.0 and < 14.8
💻
Apple

Mac Os X

>= 10.15 and < 10.15.7
💻
Apple

Mac Os X

= 10.15.7
💻
Apple

Mac Os X

= 10.15.7
💻
Apple

Mac Os X

= 10.15.7
💻
Apple

Mac Os X

= 10.15.7
💻
Apple

Mac Os X

= 10.15.7
💻
Apple

Mac Os X

= 10.15.7
💻
Apple

Mac Os X

= 10.15.7
💻
Apple

Macos

< 11.6
💻
Apple

Watchos

< 7.6.2
📦
Xpdfreader

Xpdf

< 4.04
📦
Freedesktop

Poppler

< 22.09.0

References & Advisories

関連する脆弱性情報