{
    "file_item": {
        "filepath": "security-advisories",
        "filename": "CERT-EU-SA2021-059.pdf"
    },
    "title": "Multiple Vulnerabilities in Apple Products",
    "serial_number": "2021-059",
    "publish_date": "29-10-2021 12:35:00",
    "description": "On October 25, Apple released multiple security updates fixing vulnerabilities on various Apple Operating Systems including macOS and iOS. These security updates address several vulnerabilities in Apple products, some of which could be exploited by an attacker to elevate privileges, execute arbitrary code with kernel privileges, or gain control access on the vulnerable products.",
    "url_title": "2021-059",
    "content_markdown": "---\ntitle: 'Multiple Vulnerabilities in Apple Products'\nversion: '1.0'\nnumber: '2021-059'\ndate: 'October 29, 2021'\n---\n\n_History:_\n\n* _29/10/2021 --- v1.0 -- Initial publication_\n\n# Summary\n\nOn October 25, Apple released multiple security updates fixing vulnerabilities on various Apple Operating Systems including macOS and iOS[1]. These security updates address several vulnerabilities in Apple products, some of which could be exploited by an attacker to elevate privileges, execute arbitrary code with kernel privileges, or gain control access on the vulnerable products.\n\n# Affected Products\n\nThe following products are affected [2]:\n\n- Version before macOS Monterey 12.0.1 [3]\n- Version before macOS Big Sur 11.6.1 [4]\n- Catalina without Security Update 2021-007 [5]\n- Version before iOS 15.1 and iPadOS 15.1 [6]\n- Version before iOS 14.8.1 and iPadOS 14.8.1 [7] \n\n# Recommendations\n\nCERT-EU highly recommends applying the security updates for each Apple Operating System.\n\n# References\n\n[1] <https://us-cert.cisa.gov/ncas/current-activity/2021/10/27/apple-releases-security-updates-multiple-products>\n\n[2] <https://support.apple.com/en-gb/HT201222>\n\n[3] <https://support.apple.com/en-gb/HT212869>\n\n[4] <https://support.apple.com/en-gb/HT212872>\n\n[5] <https://support.apple.com/en-gb/HT212871>\n\n[6] <https://support.apple.com/en-gb/HT212867>\n\n[7] <https://support.apple.com/en-gb/HT212868>\n",
    "content_html": "<p><em>History:</em></p><ul><li><em>29/10/2021 --- v1.0 -- Initial publication</em></li></ul><h2 id=\"summary\">Summary</h2><p>On October 25, Apple released multiple security updates fixing vulnerabilities on various Apple Operating Systems including macOS and iOS[1]. These security updates address several vulnerabilities in Apple products, some of which could be exploited by an attacker to elevate privileges, execute arbitrary code with kernel privileges, or gain control access on the vulnerable products.</p><h2 id=\"affected-products\">Affected Products</h2><p>The following products are affected [2]:</p><ul><li>Version before macOS Monterey 12.0.1 [3]</li><li>Version before macOS Big Sur 11.6.1 [4]</li><li>Catalina without Security Update 2021-007 [5]</li><li>Version before iOS 15.1 and iPadOS 15.1 [6]</li><li>Version before iOS 14.8.1 and iPadOS 14.8.1 [7] </li></ul><h2 id=\"recommendations\">Recommendations</h2><p>CERT-EU highly recommends applying the security updates for each Apple Operating System.</p><h2 id=\"references\">References</h2><p>[1] <a rel=\"noopener\" target=\"_blank\" href=\"https://us-cert.cisa.gov/ncas/current-activity/2021/10/27/apple-releases-security-updates-multiple-products\">https://us-cert.cisa.gov/ncas/current-activity/2021/10/27/apple-releases-security-updates-multiple-products</a></p><p>[2] <a rel=\"noopener\" target=\"_blank\" href=\"https://support.apple.com/en-gb/HT201222\">https://support.apple.com/en-gb/HT201222</a></p><p>[3] <a rel=\"noopener\" target=\"_blank\" href=\"https://support.apple.com/en-gb/HT212869\">https://support.apple.com/en-gb/HT212869</a></p><p>[4] <a rel=\"noopener\" target=\"_blank\" href=\"https://support.apple.com/en-gb/HT212872\">https://support.apple.com/en-gb/HT212872</a></p><p>[5] <a rel=\"noopener\" target=\"_blank\" href=\"https://support.apple.com/en-gb/HT212871\">https://support.apple.com/en-gb/HT212871</a></p><p>[6] <a rel=\"noopener\" target=\"_blank\" href=\"https://support.apple.com/en-gb/HT212867\">https://support.apple.com/en-gb/HT212867</a></p><p>[7] <a rel=\"noopener\" target=\"_blank\" href=\"https://support.apple.com/en-gb/HT212868\">https://support.apple.com/en-gb/HT212868</a></p>",
    "licence": {
        "title": "Creative Commons Attribution 4.0 International (CC-BY 4.0)",
        "link": "https://creativecommons.org/licenses/by/4.0/",
        "restrictions": "https://cert.europa.eu/legal-notice",
        "author": "The Cybersecurity Service for the Union institutions, bodies, offices and agencies"
    }
}