#VU48985 Out-of-bounds read in Apple iOS and iPadOS - CVE-2020-27946
Published: December 15, 2020
Apple iOS
iPadOS
Apple Inc.
Description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition within the FontParser component when processing fonts. A remote attacker can trick the victim into opening a file or web page that contains a specially crafted font, trigger out-of-bounds read error and read contents of memory on the system.