Total vulnerabilities in the database
The resolveImplicitLevels function in common/ubidi.c in the Unicode Bidirectional Algorithm implementation in ICU4C in International Components for Unicode (ICU) before 55.1 does not properly track directionally isolated pieces of text, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly execute arbitrary code via crafted text.
Software | From | Fixed in |
---|---|---|
apple / watchos | - | 1.0.1.x |
apple / iphone_os | - | 8.2.x |
apple / itunes | - | 12.1.3.x |
apple / mac_os_x | - | 10.10.4.x |
icu-project / international_components_for_unicode | - | 55.1 |