Integer overflow in iPadOS and Apple iOS - CVE-2021-30860
Published: August 25, 2021 / Updated: December 30, 2021
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to integer overflow when processing PDF files within the CoreGraphics component. A remote attacker can trick the victim to open a specially crafted PDF file, trigger integer overflow and execute arbitrary code on the target system.
Note, the vulnerability is being active exploited in-the-wild via the FORCEDENTRY tool against Bahraini activists.
Affected software
Apple iOS
Gentoo Linux
watchOS
macOS
Oracle Solaris
Slackware Linux
poppler
app-text/poppler
How to mitigate CVE-2021-30860
Apple iOS - addressed in versions 14.8 18H17, 12.5.5 16H62
watchOS - update to 7.6.2 18U80
macOS - addressed in versions 10.15.7 19H1417, 11.6 20G165
poppler - update to 21.12.0
app-text/poppler - update to 22.09.0
Links to Public Exploits and PoC-codes
External References
Related Security Bulletins
- Remote code execution in Apple iOS
- Multiple vulnerabilities in Apple macOS Big Sur
- Remote code execution in Apple macOS Catalina
- Remote code execution in Apple watchOS
- Multiple vulnerabilities in Apple iOS 12
- Slackware Linux update for poppler
- Gentoo update for Poppler
- Multiple vulnerabilities in Oracle Solaris