A validation issue was addressed with improved logic. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6. Processing a maliciously crafted image may lead to arbitrary code execution.
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Link | Tags |
---|---|
https://support.apple.com/en-us/HT212528 | release notes vendor advisory |
https://support.apple.com/en-us/HT212529 | release notes vendor advisory |
https://support.apple.com/en-us/HT212530 | release notes vendor advisory |
https://support.apple.com/en-us/HT212531 | release notes vendor advisory |