CoreGraphics Memory Corruption - CVE-2014-4377 Apple CoreGraphics library fails to validate the input when parsing the colorspace specification of a PDF XObject resulting in a heap overflow condition A small heap memory allocation can be overflowed with controlled data from the input in any application linked with the affected framework Using a crafted PDF file as an HTML ima