An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1. Processing a maliciously crafted movie file may lead to arbitrary code execution.
2019-12-18T18:15:27.303
2024-11-21T04:50:07.133
Modified
CVSSv3.1: 8.8 (HIGH)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | apple | iphone_os | < 12.3 | Yes |
Operating System | apple | mac_os_x | < 10.14.5 | Yes |
Operating System | apple | tvos | < 12.3 | Yes |
Operating System | apple | watchos | < 5.2.1 | Yes |