The issue was addressed with improved bounds checks. This issue is fixed in GarageBand 10.4.12. Processing a maliciously crafted image may lead to arbitrary code execution.
Affected Software
| Name | 
Vendor | 
Start Version | 
End Version | 
| Garageband | 
Apple | 
* | 
10.4.12 (excluding) | 
References