Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5xrw-9wr4-v4rm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A stack overflow was addressed with improved input validation. This issue is fixed in iOS 14.7, macOS Big Sur 11.5, watchOS 7.6, tvOS 14.7, Security Update 2021-005 Mojave, Security Update 2021-004 Catalina. Processing a maliciously crafted font file may lead to arbitrary code execution.

A stack overflow was addressed with improved input validation. This issue is fixed in iOS 14.7, macOS Big Sur 11.5, watchOS 7.6, tvOS 14.7, Security Update 2021-005 Mojave, Security Update 2021-004 Catalina. Processing a maliciously crafted font file may lead to arbitrary code execution.

EPSS

Процентиль: 77%
0.01048
Низкий

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 7.8
nvd
больше 4 лет назад

A stack overflow was addressed with improved input validation. This issue is fixed in iOS 14.7, macOS Big Sur 11.5, watchOS 7.6, tvOS 14.7, Security Update 2021-005 Mojave, Security Update 2021-004 Catalina. Processing a maliciously crafted font file may lead to arbitrary code execution.

EPSS

Процентиль: 77%
0.01048
Низкий

Дефекты

CWE-787