Out of Bounds Write Vulnerability in ALAC Decoder Allows Local Privilege Escalation

Out of Bounds Write Vulnerability in ALAC Decoder Allows Local Privilege Escalation

CVE-2021-0675 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In alac decoder, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06064258; Issue ID: ALPS06064258.

Learn more about our User Device Pen Test.