Severity
High
Analysis Summary
CVE-2021-30762
Apple iOS and iPadOS could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free in the WebKit component. By persuading a victim to visit a specially crafted Web site, an attacker could exploit this vulnerability to execute arbitrary code on the system.
CVE-2021-30761
Apple iOS and iPadOS could allow a remote attacker to execute arbitrary code on the system, caused by a memory corruption in the WebKit component. By persuading a victim to visit a specially crafted Web site, an attacker could exploit this vulnerability to execute arbitrary code on the system.
Impact
- Gain Access
- Remote Code Execution
Affected Vendors
Apple
Affected Products
- Apple iOS 12.5.3
- Apple iPadOS 12.5.3
Remediation
Refer to Apple security document HT212548 for the patch, upgrade, or suggested workaround information.