|
212001
|
6.5 |
MEDIUM
Network
|
apple
|
mac_os_x iphone_os watchos tvos
|
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. Processing a maliciously crafted font may result in t…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-8517
|
2024-11-21 13:49 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212002
|
7.5 |
HIGH
Network
|
apple
|
mac_os_x iphone_os watchos tvos
|
A validation issue was addressed with improved logic. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. Processing a maliciously crafted string may lead to a denial of se…
|
CWE-20
Improper Input Validation
|
CVE-2019-8516
|
2024-11-21 13:49 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212003
|
6.5 |
MEDIUM
Network
|
apple
|
iphone_os tvos icloud itunes safari
|
A cross-origin issue existed with the fetch API. This was addressed with improved input validation. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Wind…
|
CWE-20
Improper Input Validation
|
CVE-2019-8515
|
2024-11-21 13:49 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212004
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x iphone_os watchos tvos
|
A logic issue was addressed with improved state management. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. An application may be able to gain elevated privileges.
|
NVD-CWE-noinfo
|
CVE-2019-8514
|
2024-11-21 13:49 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212005
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x
|
This issue was addressed with improved checks. This issue is fixed in macOS Mojave 10.14.4. A local user may be able to execute arbitrary shell commands.
|
CWE-78
OS Command
|
CVE-2019-8513
|
2024-11-21 13:49 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212006
|
5.7 |
MEDIUM
Network
|
apple
|
iphone_os
|
This issue was addressed with improved transparency. This issue is fixed in iOS 12.2. A user may authorize an enterprise administrator to remotely wipe their device without appropriate disclosure.
|
CWE-863
Incorrect Authorization
|
CVE-2019-8512
|
2024-11-21 13:49 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212007
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x iphone_os watchos
|
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, watchOS 5.2. A malicious application may be able to elevate privileges.
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-8511
|
2024-11-21 13:49 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212008
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x iphone_os watchos tvos
|
An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, w…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-8510
|
2024-11-21 13:49 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212009
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x
|
A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Mojave 10.14.4. Mounting a maliciously crafted NFS network share may lead to arbitrary code execution with …
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-8508
|
2024-11-21 13:49 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212010
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x
|
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Mojave 10.14.4. Processing malicious data may lead to unexpected application termination.
|
CWE-20
Improper Input Validation
|
CVE-2019-8507
|
2024-11-21 13:49 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|