An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3. An attacker in a privileged network position may be able to execute arbitrary code.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://support.apple.com/HT209446 | vendor advisory |
https://support.apple.com/HT209443 | vendor advisory |
http://www.securityfocus.com/bid/106694 | vdb entry third party advisory |