Description


An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.0.1. Processing a maliciously crafted font may lead to arbitrary code execution.

Related CPE's


Vulnerable

References


https://support.apple.com/en-us/HT211931

Release NotesVendor Advisory

Weaknesses



CWE-125

CVSS impact metrics


CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

7.8 · High

  • CVSS V3.1

  • CVSS V3.0

  • CVSS V2.0

Information


Source identifier

[email protected]

Vulnerability status

Analyzed

Published

2023-08-14T23:15:09.500

11 months ago

Last modified

2023-08-18T19:38:06.463

11 months ago