"Apple Patches Code Execution Vulnerability in iOS, macOS"
"Apple Patches Code Execution Vulnerability in iOS, macOS"
Apple has recently released fresh security updates for iOS and macOS devices to resolve an arbitrary code execution vulnerability. The issue, tracked as CVE-2024-1580 and described as an integer overflow leading to out-of-bounds write, impacts the CoreMedia and WebRTC components of both iOS and macOS and could be triggered during image processing. Apple noted that the security defect is not specific to Apple’s products but affects the dav1d open-source AV1 cross-platform decoder, which was resolved in dav1d version 1.4.0 in February.