Memory Corruption Vulnerability in Apple Products
CVE-2019-8835

8.8HIGH

Key Information:

Vendor
Apple
Vendor
CVE Published:
27 October 2020

Summary

An issue has been identified in several Apple products where multiple memory corruption vulnerabilities can be exploited through the processing of maliciously crafted web content. This flaw could potentially allow an attacker to execute arbitrary code on the affected devices. Apple has addressed these vulnerabilities with improved memory handling in various updates. It is important for users to ensure their products are updated to the latest versions to mitigate any associated risks.

Affected Version(s)

iCloud for Windows < 10.9

iCloud for Windows < 7.16

iOS and iPadOS < 13.3

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.