Apple iOS FontParser Memory Corruption Vulnerability (CVE-2016-1740)
Apple iOS FontParser Memory Corruption Vulnerability (CVE-2016-1740)
Release date:
Updated on:
Affected Systems:
Apple iOS <9.3
Description:
CVE (CAN) ID: CVE-2016-1740
IOS is an operating system developed by Apple for mobile devices. It supports iPhone, iPod touch, iPad, and Apple TV.
A security vulnerability exists in the implementation of FontParser in versions earlier than iOS 9.3. Malicious PDF files can cause unexpected application suspension and arbitrary code execution.
<* Source: HappilyCoded
Link: https://support.apple.com/en-au/HT206166
*>
Suggestion:
Vendor patch:
Apple
-----
Apple has released a Security Bulletin (HT206166) for this purpose and the corresponding patch:
HT206166: About the security content of iOS 9.3
Link: https://support.apple.com/en-au/HT206166
This article permanently updates the link address: