Vulnerability Name: | CVE-2019-8756 (CCN-190596) | ||||||||||||
Assigned: | 2019-10-08 | ||||||||||||
Published: | 2019-10-08 | ||||||||||||
Updated: | 2021-07-21 | ||||||||||||
Summary: | Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Catalina 10.15, iOS 13, iCloud for Windows 7.14, iCloud for Windows 10.7, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, watchOS 6, iTunes 12.10.1 for Windows. Multiple issues in libxml2. | ||||||||||||
CVSS v3 Severity: | 9.8 Critical (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H) 8.5 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
7.7 High (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Type: | CWE-20 | ||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2019-8756 Source: XF Type: UNKNOWN apple-tvos-cve20198756-code-exec(190596) Source: CCN Type: Apple security document HT210604 About the security content of tvOS 13 Source: MISC Type: Vendor Advisory https://support.apple.com/en-us/HT210604 Source: MISC Type: Vendor Advisory https://support.apple.com/en-us/HT210606 Source: MISC Type: Vendor Advisory https://support.apple.com/en-us/HT210607 Source: MISC Type: Vendor Advisory https://support.apple.com/en-us/HT210634 Source: MISC Type: Vendor Advisory https://support.apple.com/en-us/HT210635 Source: MISC Type: Vendor Advisory https://support.apple.com/en-us/HT210636 Source: MISC Type: Vendor Advisory https://support.apple.com/en-us/HT210637 Source: MISC Type: Vendor Advisory https://support.apple.com/en-us/HT210722 | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||||||
BACK |