Memory Corruption Vulnerability in Apple Products
CVE-2019-8835
8.8HIGH
Key Information:
- Vendor
- Apple
- Vendor
- CVE Published:
- 27 October 2020
Summary
An issue has been identified in several Apple products where multiple memory corruption vulnerabilities can be exploited through the processing of maliciously crafted web content. This flaw could potentially allow an attacker to execute arbitrary code on the affected devices. Apple has addressed these vulnerabilities with improved memory handling in various updates. It is important for users to ensure their products are updated to the latest versions to mitigate any associated risks.
Affected Version(s)
iCloud for Windows < 10.9
iCloud for Windows < 7.16
iOS and iPadOS < 13.3
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved