An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave. Processing a maliciously crafted font may lead to arbitrary code execution.
| Software | From | Fixed in |
|---|---|---|
| apple / mac_os_x | 10.15 | 10.15.7 |
| apple / mac_os_x | 10.15.7-supplemental_update | 10.15.7-supplemental_update.x |
| apple / mac_os_x | 10.15.7 | 10.15.7.x |
| apple / macos | 11.0 | 11.2 |
| apple / mac_os_x | 10.15.7-security_update_2020-001 | 10.15.7-security_update_2020-001.x |