CVE-2019-8844

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in tvOS 13.3, watchOS 6.1.1, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Processing maliciously crafted web content may lead to arbitrary code execution.
References
Link Resource
https://support.apple.com/en-us/HT210785 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT210789 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT210790 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT210792 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT210793 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT210794 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT210795 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:icloud:*:*:*:*:*:windows:*:*
cpe:2.3:a:apple:icloud:*:*:*:*:*:windows:*:*
cpe:2.3:a:apple:itunes:*:*:*:*:*:windows:*:*
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*

History

18 May 2021, 13:19

Type Values Removed Values Added
CPE cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
CWE CWE-119 CWE-787

Information

Published : 2020-10-27 20:15

Updated : 2023-12-10 13:41


NVD link : CVE-2019-8844

Mitre link : CVE-2019-8844

CVE.ORG link : CVE-2019-8844


JSON object : View

Products Affected

apple

  • iphone_os
  • tvos
  • ipados
  • safari
  • icloud
  • watchos
  • itunes

redhat

  • enterprise_linux_desktop
  • enterprise_linux_server
  • enterprise_linux_workstation
CWE
CWE-787

Out-of-bounds Write