Apple iOS
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*, +1 more
- < 14.4
This vulnerability is being actively exploited in the wild.
A type confusion vulnerability has been identified in the XNU component of Apple iOS, iPadOS, and macOS. This vulnerability may allow a malicious application to execute arbitrary code with kernel privileges. It affects multiple versions of iOS, iPadOS, and macOS, including iOS 12.5.5, iOS 14.4, macOS Big Sur 11.2, Security Update 2021-001 Catalina, and Security Update 2021-001 Mojave. Apple is aware of reports that an exploit for this issue exists in the wild.
Exploitation of this vulnerability could lead to arbitrary code execution with kernel privileges, allowing a malicious application to execute code at the highest level of the operating system.
Users can update to iOS 12.5.5, iOS 14.4, iPadOS 14.4, macOS Big Sur 11.2, Security Update 2021-001 Catalina, or Security Update 2021-001 Mojave to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.