|
1361
|
7.8
7.2
|
HIGH
Local
|
A logic issue was addressed with improved validation. This issue is fixed in iCloud for Windows 7.17, iTunes 12.10.4 for Windows, iCloud for Windows 10.9.2, tvOS 13.3.1, Safari 13.0.5, iOS 13.3.1 and…
|
CWE-346
Origin Validation Error
|
CVE-2020-3864
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3.1
|
2024-11-21 14:31
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1362
|
6.5
4.0
|
MEDIUM
Network
|
This issue was addressed by verifying host keys when connecting to a previously-known SSH server. This issue is fixed in iOS 13.1 and iPadOS 13.1. An attacker in a privileged network position may be …
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2019-8901
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.1
|
2024-11-21 13:50
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1363
|
4.3
4.3
|
MEDIUM
Network
|
An information disclosure issue existed in the handling of the Storage Access API. This issue was addressed with improved logic. This issue is fixed in iOS 13.3 and iPadOS 13.3, tvOS 13.3, Safari 13.…
|
NVD-CWE-noinfo
|
CVE-2019-8898
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3
|
2024-11-21 13:50
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1364
|
3.3
2.1
|
LOW
Local
|
The issue was addressed with improved validation when an iCloud Link is created. This issue is fixed in iOS 13.3 and iPadOS 13.3. Live Photo audio and video data may be shared via iCloud links even i…
|
CWE-20
Improper Input Validation
|
CVE-2019-8857
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3
|
2024-11-21 13:50
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1365
|
3.3
4.3
|
LOW
Local
|
An API issue existed in the handling of outgoing phone calls initiated with Siri. This issue was addressed with improved state handling. This issue is fixed in iOS 13.3 and iPadOS 13.3, watchOS 6.1.1…
|
NVD-CWE-noinfo
|
CVE-2019-8856
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3
|
2024-11-21 13:50
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1366
|
7.5
5.0
|
HIGH
Network
|
A user privacy issue was addressed by removing the broadcast MAC address. This issue is fixed in macOS Catalina 10.15, watchOS 6, iOS 13, tvOS 13. A device may be passively tracked by its Wi-Fi MAC a…
|
NVD-CWE-noinfo
|
CVE-2019-8854
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.2
|
2024-11-21 13:50
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1367
|
5.5
4.3
|
MEDIUM
Local
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15, iOS 13.1 and iPadOS 13.1, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, a…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-8850
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.1
|
2024-11-21 13:50
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1368
|
7.8
6.8
|
HIGH
Local
|
This issue was addressed with improved checks. This issue is fixed in tvOS 13.3, watchOS 6.1.1, iCloud for Windows 10.9, macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2…
|
NVD-CWE-noinfo
|
CVE-2019-8848
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3
|
2024-11-21 13:50
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1369
|
8.8
9.3
|
HIGH
Network
|
A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 13.3, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, i…
|
CWE-416
Use After Free
|
CVE-2019-8846
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3
|
2024-11-21 13:50
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1370
|
5.3
4.3
|
MEDIUM
Network
|
A logic issue was addressed with improved validation. This issue is fixed in macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, iOS 12.4.3, watchOS 6.1, iOS 13.2 and iPad…
|
NVD-CWE-noinfo
|
CVE-2019-8796
|
cpe:2.3:o:apple:iphone_os:*:*
|
13.0
|
|
|
13.2 12.4.3
|
2024-11-21 13:50
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|