VYPR
High severity7.8NVD Advisory· Published Aug 24, 2021· Updated Jun 17, 2026

CVE-2021-30958

CVE-2021-30958

Description

An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.6.2, tvOS 15.2, macOS Monterey 12.1, Security Update 2021-008 Catalina, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Playing a malicious audio file may lead to arbitrary code execution.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

21
  • Apple Inc./watchOSv52 versions
    unspecified+ 1 more
    • (no CPE)range: unspecified
    • cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*range: <8.3
  • Apple Inc./macOSv52 versions
    unspecified+ 1 more
    • (no CPE)range: unspecified
    • cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*range: >=11.0,<11.6.2
  • Range: unspecified
  • cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
    Range: <15.2
  • cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
    Range: <15.2
  • Apple Inc./Mac OS X10 versions
    cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*+ 9 more
    • cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*range: >=10.15,<10.15.7
    • cpe:2.3:o:apple:mac_os_x:10.15.7:*:*:*:*:*:*:*
    • cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2020-001:*:*:*:*:*:*
    • cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-001:*:*:*:*:*:*
    • cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-002:*:*:*:*:*:*
    • cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-003:*:*:*:*:*:*
    • cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-004:*:*:*:*:*:*
    • cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-005:*:*:*:*:*:*
    • cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-006:*:*:*:*:*:*
    • cpe:2.3:o:apple:mac_os_x:10.15.7:security_update_2021-007:*:*:*:*:*:*
  • cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
    Range: <15.2
  • Range: before 12.1
  • Apple Inc./iOSllm-fuzzy
    Range: before 15.2
  • Range: before 11.6.2

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.