Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Thelongestusernameofall

#28888of 53,632
8.8Total CVSS
Vulnerabilities · 1
PT-2017-1301
8.8
2017-02-20
Apple · Apple Macos · CVE-2016-4667
**Name of the Vulnerable Software and Affected Versions** macOS versions prior to 10.12.1 **Description** The issue involves the `ATS` component and allows remote attackers to execute arbitrary code or cause a denial of service, resulting in memory corruption and application crash, via a crafted font. This is caused by a buffer overflow in memory. **Recommendations** For macOS versions prior to 10.12.1, update to version 10.12.1 or later to resolve the issue. As a temporary workaround, consider restricting the use of the `ATS` component until a patch is available. Avoid using crafted fonts in affected systems to minimize the risk of exploitation.