An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 6.1.2, iOS 13.3.1 and iPadOS 13.3.1, tvOS 13.3.1, macOS Catalina 10.15.3, Security Update 2020-001 Mojave, Security Update 2020-001 High Sierra. Processing a maliciously crafted image may lead to arbitrary code execution.
2020-10-27T21:15:15.243
2024-11-21T05:31:53.193
Modified
CVSSv3.1: 7.8 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | apple | ipados | < 13.3.1 | Yes |
Operating System | apple | iphone_os | < 13.3.1 | Yes |
Operating System | apple | mac_os_x | < 10.15.3 | Yes |
Operating System | apple | tvos | < 13.3.1 | Yes |
Operating System | apple | watchos | < 6.1.2 | Yes |