Multiple Memory Corruption Vulnerabilities in Apple Products
CVE-2019-8671

8.8HIGH

Key Information:

Vendor
Apple
Status
Vendor
CVE Published:
18 December 2019

Summary

Multiple memory corruption issues have been identified across several Apple products, which could potentially allow maliciously crafted web content to execute arbitrary code on affected devices. Apple has addressed these vulnerabilities through improved memory handling mechanisms. Users are strongly encouraged to update to the latest versions of their operating systems and applications to mitigate the risk associated with these vulnerabilities.

Affected Version(s)

iCloud for Windows < unspecified

iCloud for Windows (Microsoft Store) < unspecified

iOS < unspecified

References

EPSS Score

58% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.