Memory Corruption Vulnerabilities in Apple Products
CVE-2019-8672

8.8HIGH

Key Information:

Vendor
Apple
Status
Vendor
CVE Published:
18 December 2019

Summary

This vulnerability involves multiple memory corruption issues that could be exploited through carefully crafted web content, potentially allowing an attacker to execute arbitrary code on affected Apple devices. Apple has addressed these issues with enhanced memory handling measures, and users are advised to update their systems to the latest versions to mitigate any risks posed by these vulnerabilities.

Affected Version(s)

iCloud for Windows < unspecified

iCloud for Windows (Microsoft Store) < unspecified

iOS < unspecified

References

EPSS Score

93% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.