An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3. A remote attacker may be able to leak memory.
No PoCs from references.
- https://github.com/Siguza/ios-resources
- https://github.com/TinToSer/ios-RCE-Vulnerability
- https://github.com/alphaSeclab/sec-daily-2019
- https://github.com/ggghost210/ios-resources
- https://github.com/hwiwonl/dayone