Total vulnerabilities in the database
The resolveImplicitLevels function in common/ubidi.c in the Unicode Bidirectional Algorithm implementation in ICU4C in International Components for Unicode (ICU) before 55.1 uses an integer data type that is inconsistent with a header file, which allows remote attackers to cause a denial of service (incorrect malloc followed by invalid free) or possibly execute arbitrary code via crafted text.
Software | From | Fixed in |
---|---|---|
apple / watchos | - | 1.0.1.x |
apple / mac_os_x | - | 10.10.4.x |
icu-project / international_components_for_unicode | - | 55.1 |