An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, iTunes 12.9.3 for Windows. A malicious application may be able to elevate privileges.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://support.apple.com/HT209446 | vendor advisory |
https://support.apple.com/HT209443 | vendor advisory |
https://support.apple.com/HT209450 | vendor advisory |
http://www.securityfocus.com/bid/106694 | third party advisory vdb entry |