Skip to content
COOEY

EXPOSURES › CVE-2021-30860

CVE-2021-30860

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2021-11-03 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2021-30860 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 78/100 rceexploited-in-wildunpatched

Apple's CoreGraphics integer overflow vulnerability (CVE-2021-30860) allowed remote code execution via malicious PDFs across iOS, iPadOS, macOS, and watchOS.

This integer overflow flaw in CoreGraphics enabled arbitrary code execution when processing crafted PDFs, directly impacting DIB organizations relying on Apple devices for secure operations. The vulnerability was actively exploited in the wild (KEV), demonstrating that even major vendors can ship unpatched, high-severity flaws that compromise device integrity and violate NIST 800-171 requirements for patch management and vulnerability mitigation.

Shame score — A critical integer overflow flaw affecting core system components was actively exploited in the wild, indicating severe negligence in patch management and vulnerability disclosure for a major DIB vendor.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Apple iOS, iPadOS, macOS, and watchOS CoreGraphics contain an integer overflow vulnerability which may allow code execution when processing a maliciously crafted PDF. The vulnerability is also known under the moniker of FORCEDENTRY.

SENTIMENT · TRUSTED SOURCES
synthesis severe-fallout -0.60
Apple faced severe fallout for a critical integer overflow vulnerability allowing code execution via malicious PDFs, though the vendor's response was not detailed in the provided sources.
cooey ↗ severe-fallout -0.60
Critical vulnerability disclosed with no praise for handling in the provided text.
"Apple iOS, iPadOS, macOS, and watchOS CoreGraphics contain an integer overflow vulnerability which may allow code execution when processing a maliciously crafted PDF."
app.opencve.io ↗ severe-fallout +0.00
Neutral CVE database listing, no sentiment toward vendor.
www.cvefind.com ↗ severe-fallout +0.00
Neutral CVE database listing, no sentiment toward vendor.
github.com ↗ severe-fallout +0.00
Neutral GitHub repository listing, no sentiment toward vendor.
SentinelOne ↗ severe-fallout +0.00
Neutral vendor security page, no sentiment toward vendor.
cve.akaoma.com ↗ severe-fallout +0.00
Neutral CVE database listing, no sentiment toward vendor.
finance.yahoo.com ↗ severe-fallout +0.00
Neutral unrelated article, no sentiment toward vendor.
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.