CVE-2019-8605

CVE Published 2019-12-18
Related CWE(s) CWE-416: Use After Free
Related Vendor(s) apple
Related Product(s) mac_os_x, tvos, iphone_os, watchos
Exploitation Reported (CISA KEV) 2022-06-27
CVSS 3 Base Score 7.8 (HIGH)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector LOCAL

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1. A malicious application may be able to execute arbitrary code with system privileges.

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

References