Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2021-30860

Apple | Multiple ProductsAdded 2021-11-03Remediation Deadline 2021-11-17

Apple Multiple Products Integer Overflow Vulnerability

Apple iOS, iPadOS, macOS, and watchOS CoreGraphics contain an integer overflow vulnerability which may allow code execution when processing a maliciously crafted PDF. The vulnerability is also known under the moniker of FORCEDENTRY.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-20

CWE-190

References