Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-28gq-752q-x82x

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An out-of-bounds read was addressed with improved input validation. This issue is fixed in tvOS 14.3, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, iOS 14.3 and iPadOS 14.3, iCloud for Windows 12.0, watchOS 7.2. Processing a maliciously crafted image may lead to arbitrary code execution.

An out-of-bounds read was addressed with improved input validation. This issue is fixed in tvOS 14.3, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, iOS 14.3 and iPadOS 14.3, iCloud for Windows 12.0, watchOS 7.2. Processing a maliciously crafted image may lead to arbitrary code execution.

EPSS

Процентиль: 74%
0.00849
Низкий

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.8
nvd
больше 4 лет назад

An out-of-bounds read was addressed with improved input validation. This issue is fixed in tvOS 14.3, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, iOS 14.3 and iPadOS 14.3, iCloud for Windows 12.0, watchOS 7.2. Processing a maliciously crafted image may lead to arbitrary code execution.

CVSS3: 8.8
fstec
больше 4 лет назад

Уязвимость компонента ImageIO операционных систем tvOS, Ios, iPadOS, watchOS и сервиса iCloud для операционных систем Windows, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 74%
0.00849
Низкий

Дефекты

CWE-125