QID 610336

Date Published: 2021-05-05

QID 610336: Apple iOS 12.5.3 Security Update Missing (HT212341)

iOS is a mobile operating system created and developed by Apple Inc.

Following security issues are observed :
A buffer overflow issue was addressed with improved memory handling. CVE-2021-30666
A memory corruption issue was addressed with improved state management. CVE-2021-30665
An integer overflow was addressed with improved input validation. CVE-2021-30663
A use after free issue was addressed with improved memory management. CVE-2021-30661

Affected Devices
iPhone 5s, iPhone 6, iPhone 6 Plus, iPad Air, iPad mini 2, iPad mini 3, and iPod touch (6th generation)

On successful exploitation, it could allow an attacker to execute code.

  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Refer to Apple advisory HT212341 for patching details.
    Vendor References

    CVEs related to QID 610336

    Software Advisories
    Advisory ID Software Component Link
    HT212341 iOS URL Logo support.apple.com/en-in/HT212341