The issue was addressed with improved memory handling. This issue is fixed in visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. An attacker in a privileged position may be able to perform a denial-of-service.
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
Link | Tags |
---|---|
https://support.apple.com/en-us/122073 | release notes |
https://support.apple.com/en-us/122072 | release notes |
https://support.apple.com/en-us/122068 | release notes |
https://support.apple.com/en-us/122071 | release notes |
https://support.apple.com/en-us/122066 | release notes |