CVE-2019-8825

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
27/10/2020
Last modified:
21/07/2021

Description

A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15, iOS 13, iCloud for Windows 10.7, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, iCloud for Windows 7.14, iTunes 12.10.1 for Windows. Processing maliciously crafted web content may lead to arbitrary code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:apple:icloud:*:*:*:*:*:windows:*:* 7.14 (excluding)
cpe:2.3:a:apple:icloud:*:*:*:*:*:windows:*:* 10.0 (including) 10.7 (excluding)
cpe:2.3:a:apple:itunes:*:*:*:*:*:windows:*:* 12.10.1 (excluding)
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* 13.3 (excluding)
cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* 10.15.1 (excluding)