Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w3w2-prxj-chgg

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A memory corruption issue was addressed with improved input validation. This issue is fixed in tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Processing a maliciously crafted image may lead to arbitrary code execution.

A memory corruption issue was addressed with improved input validation. This issue is fixed in tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Processing a maliciously crafted image may lead to arbitrary code execution.

EPSS

Процентиль: 70%
0.00634
Низкий

Дефекты

CWE-119
CWE-787

Связанные уязвимости

CVSS3: 7.8
nvd
больше 4 лет назад

A memory corruption issue was addressed with improved input validation. This issue is fixed in tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Processing a maliciously crafted image may lead to arbitrary code execution.

CVSS3: 7.8
fstec
больше 4 лет назад

Уязвимость компонента ImageIO операционных систем iPadOS, watchOS, iOS, tvOS, Mac OS и сервиса iCloud, позволяющая нарушителю выполнить произвольный код в целевой системе

EPSS

Процентиль: 70%
0.00634
Низкий

Дефекты

CWE-119
CWE-787