CVE-2019-8835
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in tvOS 13.3, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Processing maliciously crafted web content may lead to arbitrary code execution.
Published
2020-10-27T20:15:20.673
Last Modified
2024-11-21T04:50:34.160
Status
Modified
Source
[email protected]
Severity
CVSSv3.1: 8.8 (HIGH)
CVSSv2 Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
- Access Vector: NETWORK
- Access Complexity: MEDIUM
- Authentication: NONE
- Confidentiality Impact: COMPLETE
- Integrity Impact: COMPLETE
- Availability Impact: COMPLETE
Exploitability Score
8.6
Impact Score
10.0
Weaknesses
Affected Vendors & Products
References
-
https://support.apple.com/en-us/HT210785
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/en-us/HT210790
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/en-us/HT210792
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/en-us/HT210793
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/en-us/HT210794
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/en-us/HT210795
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/en-us/HT210785
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/en-us/HT210790
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/en-us/HT210792
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/en-us/HT210793
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/en-us/HT210794
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/en-us/HT210795
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)