A buffer overflow issue was addressed with improved memory handling. This issue is fixed in watchOS 9.6, macOS Big Sur 11.7.9, iOS 15.7.8 and iPadOS 15.7.8, macOS Monterey 12.6.8, tvOS 16.6, iOS 16.6 and iPadOS 16.6, macOS Ventura 13.5. A remote user may be able to cause unexpected system termination or corrupt kernel memory.
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
Link | Tags |
---|---|
https://support.apple.com/en-us/HT213846 | vendor advisory |
https://support.apple.com/en-us/HT213841 | vendor advisory |
https://support.apple.com/en-us/HT213843 | vendor advisory |
https://support.apple.com/en-us/HT213842 | vendor advisory |
https://support.apple.com/en-us/HT213845 | vendor advisory |
https://support.apple.com/en-us/HT213844 | vendor advisory |
https://support.apple.com/en-us/HT213848 | vendor advisory |
https://support.apple.com/kb/HT213843 | vendor advisory |
https://support.apple.com/kb/HT213844 | vendor advisory |
https://support.apple.com/kb/HT213841 | vendor advisory |
https://support.apple.com/kb/HT213845 | vendor advisory |
https://support.apple.com/kb/HT213846 | vendor advisory |
https://support.apple.com/kb/HT213842 | vendor advisory |
https://support.apple.com/kb/HT213848 | vendor advisory |