CVE-2014-1275Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple Iphone OS

Severity
6.8MEDIUMNVD
EPSS
1.1%
top 21.55%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 14
Latest updateMay 14

Description

Buffer overflow in ImageIO in Apple iOS before 7.1 and Apple TV before 6.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted JPEG2000 data in a PDF document.

CVSS vector

AV:N/AC:M/C:P/I:P/A:PExploitability: 8.6 | Impact: 6.4

Affected Packages2 packages

NVDapple/tvos6.0.2+2
NVDapple/iphone_os7.0.6+6

🔴Vulnerability Details

1
GHSA
GHSA-q2vm-m23g-fp8w: Buffer overflow in ImageIO in Apple iOS before 72022-05-14

💬Community

1
Bugzilla
CVE-2014-2285 net-snmp: snmptrapd crash when using a trap with empty community string2014-03-05