CoreText in Apple iOS 8.x up to and including 8.3 allows remote malicious users to cause a denial of service (reboot and messaging disruption) via crafted Unicode text that is not properly handled during display truncation in the Notifications feature, as demonstrated by Arabic characters in (1) an SMS message or (2) a WhatsApp message.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apple iphone os 8.3 |
||
apple iphone os 8.0 |
||
apple iphone os 8.1.2 |
||
apple iphone os 8.1 |
||
apple iphone os 8.0.2 |
||
apple iphone os 8.0.1 |
||
apple iphone os 8.2 |
||
apple iphone os 8.1.3 |
||
apple mac os x |
||
apple itunes |