Information disclosure in Apple iOS and iPadOS - CVE-2021-30998
Published: February 13, 2023
Apple iOS
iPadOS
Apple Inc.
Description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to excessive data output by the application in Mail application when sending an S/MIME encrypted email using a certificate with more than one email address. A remote attacker can gain obtain user's email address.