Related Vulnerabilities: CVE-2017-5209  

The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via split encoded Apple Property List data.

Severity High

Remote No

Type Information disclosure

Description

The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via split encoded Apple Property List data.

AVG-215 libplist 1.12-6 2.0.0-1 High Fixed

16 May 2017 ASA-201705-18 AVG-215 libplist High multiple issues

https://bugzilla.redhat.com/show_bug.cgi?id=1412613