Information disclosure in Apple iOS and iPadOS - CVE-2021-30998
Published: February 13, 2023
Vulnerability details
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to excessive data output by the application in Mail application when sending an S/MIME encrypted email using a certificate with more than one email address. A remote attacker can gain obtain user's email address.
Affected software
iPadOS
How to mitigate CVE-2021-30998
iPadOS - update to 15.2 19C56