An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. Processing a maliciously crafted font may result in the disclosure of process memory.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://support.apple.com/HT209599 | vendor advisory |
https://support.apple.com/HT209601 | vendor advisory |
https://support.apple.com/HT209600 | vendor advisory |
https://support.apple.com/HT209602 | vendor advisory |