ID

VAR-201912-0574


CVE

CVE-2019-8641


TITLE

Multiple Apple product Foundation Component Buffer Error Vulnerability

Trust: 0.6

sources: CNNVD: CNNVD-201907-1207

DESCRIPTION

An out-of-bounds read was addressed with improved input validation. Apple macOS, watchOS, iOS and tvOS are prone to the following security vulnerabilities: 1. Multiple denial-of-service vulnerabilities 2. Multiple information-disclosure vulnerabilities 3. Multiple memory-corruption vulnerabilities Attackers can exploit these issues to execute arbitrary code, obtain sensitive information and cause denial-of-service conditions. Apple iOS, etc. are all products of Apple (Apple). Apple iOS is an operating system developed for mobile devices. Apple tvOS is a smart TV operating system. Apple macOS Mojave is a dedicated operating system developed for Mac computers. Foundation is one of the frameworks that provides basic system services for all applications. A buffer error vulnerability exists in Foundation components in several Apple products. Apple tvOS could allow a remote malicious user to execute arbitrary code on the system, caused by an out-of-bounds read in the Foundation component. CVE-2019-8693: Arash Tohidi of Solita autofs Available for: macOS Sierra 10.12.6, macOS High Sierra 10.13.6, macOS Mojave 10.14.5 Impact: Extracting a zip file containing a symbolic link to an endpoint in an NFS mount that is attacker controlled may bypass Gatekeeper Description: This was addressed with additional checks by Gatekeeper on files mounted through a network share. Alternatively, on your watch, select "My Watch > General > About". -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 APPLE-SA-2019-10-29-6 Additional information for APPLE-SA-2019-9-26-3 iOS 13 iOS 13 addresses the following: Bluetooth Available for: iPhone 6s and later Impact: Notification previews may show on Bluetooth accessories even when previews are disabled Description: A logic issue existed with the display of notification previews. CVE-2019-8711: Arjang of MARK ANTHONY GROUP INC., Cemil Ozkebapci (@cemilozkebapci) of Garanti BBVA, Oguzhan Meral of Deloitte Consulting, Ömer Bozdoğan-Ramazan Atıl Anadolu Lisesi Adana/TÜRKİYE CFNetwork Available for: iPhone 6s and later Impact: Processing maliciously crafted web content may lead to a cross site scripting attack Description: This issue was addressed with improved checks. CVE-2019-8753: Łukasz Pilorz of Standard Chartered GBS Poland Entry added October 29, 2019 CoreAudio Available for: iPhone 6s and later Impact: Processing a maliciously crafted movie may result in the disclosure of process memory Description: A memory corruption issue was addressed with improved validation. CVE-2019-8705: riusksk of VulWar Corp working with Trend Micro's Zero Day Initiative CoreCrypto Available for: iPhone 6s and later Impact: Processing a large input may lead to a denial of service Description: A denial of service issue was addressed with improved input validation. CVE-2019-8741: Nicky Mouha of NIST Entry added October 29, 2019 CoreMedia Available for: iPhone 6s and later Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A memory corruption issue was addressed with improved state management. CVE-2019-8825: Found by GWP-ASan in Google Chrome Entry added October 29, 2019 Face ID Available for: iPhone 6s and later Impact: A 3D model constructed to look like the enrolled user may authenticate via Face ID Description: This issue was addressed by improving Face ID machine learning models. CVE-2019-8760: Wish Wu (吴潍浠 @wish_wu) of Ant-financial Light-Year Security Lab Foundation Available for: iPhone 6s and later Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution Description: An out-of-bounds read was addressed with improved input validation. CVE-2019-8641: Samuel Groß and Natalie Silvanovich of Google Project Zero CVE-2019-8746: Natalie Silvanovich and Samuel Groß of Google Project Zero Entry added October 29, 2019 IOUSBDeviceFamily Available for: iPhone 6s and later Impact: An application may be able to execute arbitrary code with kernel privileges Description: A memory corruption issue was addressed with improved memory handling. CVE-2019-8718: Joshua Hill and Sem Voigtländer Entry added October 29, 2019 Kernel Available for: iPhone 6s and later Impact: A local app may be able to read a persistent account identifier Description: A validation issue was addressed with improved logic. CVE-2019-8809: Apple Entry added October 29, 2019 Kernel Available for: iPhone 6s and later Impact: An application may be able to execute arbitrary code with kernel privileges Description: A memory corruption issue was addressed with improved state management. CVE-2019-8709: derrek (@derrekr6) [confirmed]derrek (@derrekr6) Entry added October 29, 2019 Kernel Available for: iPhone 6s and later Impact: An application may be able to execute arbitrary code with kernel privileges Description: A memory corruption issue was addressed with improved memory handling. CVE-2019-8717: Jann Horn of Google Project Zero Entry added October 29, 2019 Kernel Available for: iPhone 6s and later Impact: An application may be able to execute arbitrary code with system privileges Description: A memory corruption issue was addressed with improved memory handling. CVE-2019-8712: Mohamed Ghannam (@_simo36) Entry added October 29, 2019 Kernel Available for: iPhone 6s and later Impact: A malicious application may be able to determine kernel memory layout Description: A memory corruption issue existed in the handling of IPv6 packets. CVE-2019-8744: Zhuo Liang of Qihoo 360 Vulcan Team Entry added October 29, 2019 Keyboards Available for: iPhone 6s and later Impact: A local user may be able to leak sensitive user information Description: An authentication issue was addressed with improved state management. CVE-2019-8704: 王 邦 宇 (wAnyBug.Com) of SAINTSEC libxml2 Available for: iPhone 6s and later Impact: Multiple issues in libxml2 Description: Multiple memory corruption issues were addressed with improved input validation. CVE-2019-8749: found by OSS-Fuzz CVE-2019-8756: found by OSS-Fuzz Entry added October 29, 2019 Messages Available for: iPhone 6s and later Impact: A person with physical access to an iOS device may be able to access contacts from the lock screen Description: The issue was addressed by restricting options offered on a locked device. CVE-2019-8742: videosdebarraquito Notes Available for: iPhone 6s and later Impact: A local user may be able to view a user's locked notes Description: The contents of locked notes sometimes appeared in search results. CVE-2019-8730: Jamie Blumberg (@jamie_blumberg) of Virginia Polytechnic Institute and State University Entry added October 29, 2019 PluginKit Available for: iPhone 6s and later Impact: A local user may be able to check for the existence of arbitrary files Description: A logic issue was addressed with improved restrictions. CVE-2019-8708: an anonymous researcher Entry added October 29, 2019 PluginKit Available for: iPhone 6s and later Impact: An application may be able to execute arbitrary code with system privileges Description: A memory corruption issue was addressed with improved memory handling. CVE-2019-8715: an anonymous researcher Entry added October 29, 2019 Quick Look Available for: iPhone 6s and later Impact: Processing a maliciously crafted file may disclose user information Description: A permissions issue existed in which execute permission was incorrectly granted. CVE-2019-8731: Saif Hamed Hamdan Al Hinai of Oman National CERT, Yiğit Can YILMAZ (@yilmazcanyigit) Safari Available for: iPhone 6s and later Impact: Visiting a malicious website may lead to address bar spoofing Description: A logic issue was addressed with improved state management. CVE-2019-8727: Divyanshu Shukla (@justm0rph3u5) UIFoundation Available for: iPhone 6s and later Impact: Processing a maliciously crafted text file may lead to arbitrary code execution Description: A buffer overflow was addressed with improved bounds checking. CVE-2019-8745: riusksk of VulWar Corp working with Trend Micro's Zero Day Initiative Entry added October 29, 2019 WebKit Available for: iPhone 6s and later Impact: Maliciously crafted web content may violate iframe sandboxing policy Description: This issue was addressed with improved iframe sandbox enforcement. CVE-2019-8771: Eliya Stein of Confiant Entry added October 29, 2019 WebKit Available for: iPhone 6s and later Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: Multiple memory corruption issues were addressed with improved memory handling. CVE-2019-8707: an anonymous researcher working with Trend Micro's Zero Day Initiative, cc working with Trend Micro Zero Day Initiative CVE-2019-8726: Jihui Lu of Tencent KeenLab CVE-2019-8728: Junho Jang of LINE Security Team and Hanul Choi of ABLY Corporation CVE-2019-8733: Sergei Glazunov of Google Project Zero CVE-2019-8734: found by OSS-Fuzz CVE-2019-8735: G. Geshev working with Trend Micro Zero Day Initiative Entry added October 29, 2019 WebKit Available for: iPhone 6s and later Impact: A user may be unable to delete browsing history items Description: "Clear History and Website Data" did not clear the history. CVE-2019-8768: Hugo S. Diaz (coldpointblue) Entry added October 29, 2019 WebKit Available for: iPhone 6s and later Impact: Processing maliciously crafted web content may lead to universal cross site scripting Description: A logic issue was addressed with improved state management. CVE-2019-8625: Sergei Glazunov of Google Project Zero CVE-2019-8719: Sergei Glazunov of Google Project Zero CVE-2019-8764: Sergei Glazunov of Google Project Zero Entry added October 29, 2019 WebKit Page Loading Available for: iPhone 6s and later Impact: Processing maliciously crafted web content may lead to universal cross site scripting Description: A logic issue was addressed with improved state management. CVE-2019-8674: Sergei Glazunov of Google Project Zero Additional recognition AppleRTC We would like to acknowledge Vitaly Cheptsov for their assistance. Audio We would like to acknowledge riusksk of VulWar Corp working with Trend Micro's Zero Day Initiative for their assistance. Bluetooth We would like to acknowledge Jan Ruge of TU Darmstadt, Secure Mobile Networking Lab, Jiska Classen of TU Darmstadt, Secure Mobile Networking Lab, Francesco Gringoli of University of Brescia, Dennis Heinze of TU Darmstadt, Secure Mobile Networking Lab for their assistance. boringssl We would like to acknowledge Thijs Alkemade (@xnyhps) of Computest for their assistance. Control Center We would like to acknowledge Brandon Sellers for their assistance. HomeKit We would like to acknowledge Tian Zhang for their assistance. Kernel We would like to acknowledge Brandon Azad of Google Project Zero for their assistance. Keyboard We would like to acknowledge an anonymous researcher for their assistance. Mail We would like to acknowledge Kenneth Hyndycz for their assistance. mDNSResponder We would like to acknowledge Gregor Lang of e.solutions GmbH for their assistance. Profiles We would like to acknowledge Erik Johnson of Vernon Hills High School and James Seeley (@Code4iOS) of Shriver Job Corps for their assistance. SafariViewController We would like to acknowledge Yiğit Can YILMAZ (@yilmazcanyigit) for their assistance. VPN We would like to acknowledge Royce Gawron of Second Son Consulting, Inc. for their assistance. WebKit We would like to acknowledge MinJeong Kim of Information Security Lab, Chungnam National University, JaeCheol Ryou of the Information Security Lab, Chungnam National University in South Korea, Yiğit Can YILMAZ (@yilmazcanyigit), Zhihua Yao of DBAPPSecurity Zion Lab, an anonymous researcher, and cc working with Trend Micro's Zero Day Initiative for their assistance. Installation note: This update is available through iTunes and Software Update on your iOS device, and will not appear in your computer's Software Update application, or in the Apple Downloads site. Make sure you have an Internet connection and have installed the latest version of iTunes from https://www.apple.com/itunes/ iTunes and Software Update on the device will automatically check Apple's update server on its weekly schedule. When an update is detected, it is downloaded and the option to be installed is presented to the user when the iOS device is docked. We recommend applying the update immediately if possible. Selecting Don't Install will present the option the next time you connect your iOS device. The automatic update process may take up to a week depending on the day that iTunes or the device checks for updates. You may manually obtain the update via the Check for Updates button within iTunes, or the Software Update on your device. To check that the iPhone, iPod touch, or iPad has been updated: * Navigate to Settings * Select General * Select About. The version after applying this update will be "iOS 13". Information will also be posted to the Apple Security Updates web site: https://support.apple.com/kb/HT201222 This message is signed with Apple's Product Security PGP key, and details are available at: https://www.apple.com/support/security/pgp/ -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEM5FaaFRjww9EJgvRBz4uGe3y0M0FAl24s3oACgkQBz4uGe3y 0M1GMxAAnwBO9htU2i7+SHsXiEt2xJbjilLMM9V5LObjUWqaHXOxdQuYiPxFy9lR neTOHwR2z1f3L3UPkGut28i24w7fwHVBdFh7w5p5RXlBf7tcRmFhKBUkYIhQ90Qj jO6DXiCL9InCBVs2nW9Fr4yYV13kdoES6MfguyldGVpQMkyUcZ3F2XK0RCHNqEgz h+1dR/uws3Ce+HNbb7wnqe4UzAI5DJUR/vH98+fWTl5P6CCaoZrv53vaxErLRBXi gn/4rtzw+wDlThlrpkE5MwxmvLMF2ZqjUhOSVzKb3qXK+RFgE9FH8SKEBKkCxAa+ 8/vZu+zdbN6KCzO608TXH9rNO2LbtQqTlO/jHGTJ30UEaKo9PyFozGkCE6XkWmFU xtayVkSL08drJEgm+CB80g//hr2CESF0fMHFe8yQYeN2uL5yQxoavyub8E/nPKn1 v32Z6Z2fpGzP3eCLYbV93cBcdJaeXTdib47vvodyYFfFEja7xrv0AvPAbSSm98DK VtFw3eNAKRbmIEAeY4b1uhdB+qUiqMEWqh0sd97+chY2Do90/4IG/3caLc0pTpDt huDUQs/IbSujrdjCWSfz35qU4u9sxPpM8wQR2M7mdfY9qGp+Xgfh/MprSZ4wOuS3 PAAs5Pdr9GfymsB+CDpMEr+DiTOza6SUjIadZ+j2FWaklzg7h1A= =NYIZ -----END PGP SIGNATURE----- . CVE-2019-8644: G. Ltd. CVE-2019-8669: akayn working with Trend Micro's Zero Day Initiative CVE-2019-8671: Samuel Groß of Google Project Zero CVE-2019-8672: Samuel Groß of Google Project Zero CVE-2019-8673: Soyeon Park and Wen Xu of SSLab at Georgia Tech CVE-2019-8676: Soyeon Park and Wen Xu of SSLab at Georgia Tech CVE-2019-8677: Jihui Lu of Tencent KeenLab CVE-2019-8678: an anonymous researcher, Anthony Lai (@darkfloyd1014) of Knownsec, Ken Wong (@wwkenwong) of VXRL, Jeonghoon Shin (@singi21a) of Theori, Johnny Yu (@straight_blast) of VX Browser Exploitation Group, Chris Chan (@dr4g0nfl4me) of VX Browser Exploitation Group, Phil Mok (@shadyhamsters) of VX Browser Exploitation Group, Alan Ho (@alan_h0) of Knownsec, Byron Wai of VX Browser Exploitation CVE-2019-8679: Jihui Lu of Tencent KeenLab CVE-2019-8680: Jihui Lu of Tencent KeenLab CVE-2019-8681: G. CVE-2019-9506: Daniele Antonioli of SUTD, Singapore, Dr. Nils Ole Tippenhauer of CISPA, Germany, and Prof

Trust: 2.16

sources: NVD: CVE-2019-8641 // BID: 109332 // VULHUB: VHN-160076 // VULMON: CVE-2019-8641 // PACKETSTORM: 154639 // PACKETSTORM: 154054 // PACKETSTORM: 154640 // PACKETSTORM: 153726 // PACKETSTORM: 155064 // PACKETSTORM: 155062 // PACKETSTORM: 154056 // PACKETSTORM: 153711 // PACKETSTORM: 154057

AFFECTED PRODUCTS

vendor:applemodel:watchosscope:ltversion:5.3

Trust: 1.0

vendor:applemodel:mac os xscope:ltversion:10.14.6

Trust: 1.0

vendor:applemodel:tvosscope:ltversion:12.4

Trust: 1.0

vendor:applemodel:iphone osscope:ltversion:12.4

Trust: 1.0

vendor:applemodel:watchosscope:eqversion:5.2.1

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:5.1.3

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:5.1.2

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:4.3.2

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:4.3.1

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:3.1.3

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:3.1.1

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:2.2.2

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:2.2.1

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:2.0.1

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:1.0.1

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:5

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:4.3

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:4.2.3

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:4.2.2

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:4.2

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:4.1

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:4

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:3.2.3

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:3.2.2

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:3.2.1

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:3.2

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:3.1

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:3.0

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:3

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:2.2

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:2.1

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:2.0

Trust: 0.3

vendor:applemodel:watchosscope:eqversion:1.0

Trust: 0.3

vendor:applemodel:watch sportscope:eqversion:0

Trust: 0.3

vendor:applemodel:watch hermesscope:eqversion:0

Trust: 0.3

vendor:applemodel:watch editionscope:eqversion:0

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:12.2.1

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:12.1.2

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:12.1.1

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:11.4.1

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:11.2.6

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:11.2.5

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:10.1.1

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:10.0.1

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:9.2.2

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:9.2.1

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:9.1.1

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:9.2

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:9.1

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:9.0

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:12.3

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:12

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:11.4

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:11.2.1

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:11.2

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:11.1

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:11

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:10.2.2

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:10.2.1

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:10.2

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:10.1

Trust: 0.3

vendor:applemodel:tvosscope:eqversion:10

Trust: 0.3

vendor:applemodel:tvscope:eqversion:0

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.14.5

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.14.4

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.14.3

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.14.2

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.14.1

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.13.6

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.13.1

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.14

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.13.5

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.13.4

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.13.3

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.13.2

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.13

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.12.6

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.12.5

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.12.4

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.12.3

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.12.2

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.12.1

Trust: 0.3

vendor:applemodel:macosscope:eqversion:10.12

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:0

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:0

Trust: 0.3

vendor:applemodel:ipadscope:eqversion:0

Trust: 0.3

vendor:applemodel:iosscope:eqversion:50

Trust: 0.3

vendor:applemodel:iosscope:eqversion:40

Trust: 0.3

vendor:applemodel:iosscope:eqversion:30

Trust: 0.3

vendor:applemodel:iosscope:eqversion:12.1.4

Trust: 0.3

vendor:applemodel:iosscope:eqversion:12.1.3

Trust: 0.3

vendor:applemodel:iosscope:eqversion:12.1.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:12.0.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:11.4.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:10.2.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:10.0.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:9.3.4

Trust: 0.3

vendor:applemodel:iosscope:eqversion:9.3.3

Trust: 0.3

vendor:applemodel:iosscope:eqversion:9.3.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:9.3.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:9.2.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:9.0.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:9.0.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:8.4.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:7.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:7.0.6

Trust: 0.3

vendor:applemodel:iosscope:eqversion:7.0.5

Trust: 0.3

vendor:applemodel:iosscope:eqversion:7.0.3

Trust: 0.3

vendor:applemodel:iosscope:eqversion:7.0.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:7.0.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:6.3.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:6.1.6

Trust: 0.3

vendor:applemodel:iosscope:eqversion:6.1.4

Trust: 0.3

vendor:applemodel:iosscope:eqversion:6.1.3

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.2.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.0.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.0.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:3.2.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:3.2.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:9.3.5

Trust: 0.3

vendor:applemodel:iosscope:eqversion:9.3

Trust: 0.3

vendor:applemodel:iosscope:eqversion:9.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:9.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:9

Trust: 0.3

vendor:applemodel:iosscope:eqversion:8.4

Trust: 0.3

vendor:applemodel:iosscope:eqversion:8.3

Trust: 0.3

vendor:applemodel:iosscope:eqversion:8.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:8.1.3

Trust: 0.3

vendor:applemodel:iosscope:eqversion:8.1.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:8.1.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:8.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:8

Trust: 0.3

vendor:applemodel:iosscope:eqversion:7.1.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:7.1.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:7.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:7.0.4

Trust: 0.3

vendor:applemodel:iosscope:eqversion:7

Trust: 0.3

vendor:applemodel:iosscope:eqversion:6.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:6.0.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:6.0.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:6

Trust: 0.3

vendor:applemodel:iosscope:eqversion:5.1.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:5.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:5.0.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:5

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.3.5

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.3.4

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.3.3

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.3.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.3.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.3

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.2.9

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.2.8

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.2.7

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.2.6

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.2.5

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.2.10

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4

Trust: 0.3

vendor:applemodel:iosscope:eqversion:3.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:3.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:3.0

Trust: 0.3

vendor:applemodel:iosscope:eqversion:2.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:2.0

Trust: 0.3

vendor:applemodel:iosscope:eqversion:12.3

Trust: 0.3

vendor:applemodel:iosscope:eqversion:12.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:12.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:12

Trust: 0.3

vendor:applemodel:iosscope:eqversion:11.4

Trust: 0.3

vendor:applemodel:iosscope:eqversion:11.3.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:11.3

Trust: 0.3

vendor:applemodel:iosscope:eqversion:11.2.6

Trust: 0.3

vendor:applemodel:iosscope:eqversion:11.2.5

Trust: 0.3

vendor:applemodel:iosscope:eqversion:11.2.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:11.2.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:11.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:11.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:11

Trust: 0.3

vendor:applemodel:iosscope:eqversion:10.3.3

Trust: 0.3

vendor:applemodel:iosscope:eqversion:10.3.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:10.3.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:10.3

Trust: 0.3

vendor:applemodel:iosscope:eqversion:10.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:10.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:10

Trust: 0.3

vendor:applemodel:watchosscope:neversion:5.3

Trust: 0.3

vendor:applemodel:tvosscope:neversion:12.4

Trust: 0.3

vendor:applemodel:security update sierrascope:neversion:2019-0040

Trust: 0.3

vendor:applemodel:security update high sierrascope:neversion:2019-0040

Trust: 0.3

vendor:applemodel:macosscope:neversion:10.14.6

Trust: 0.3

vendor:applemodel:iosscope:neversion:12.4

Trust: 0.3

sources: BID: 109332 // NVD: CVE-2019-8641

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2019-8641
value: CRITICAL

Trust: 1.0

CNNVD: CNNVD-201907-1207
value: CRITICAL

Trust: 0.6

VULHUB: VHN-160076
value: HIGH

Trust: 0.1

VULMON: CVE-2019-8641
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2019-8641
severity: HIGH
baseScore: 7.5
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.1

VULHUB: VHN-160076
severity: HIGH
baseScore: 7.5
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

nvd@nist.gov: CVE-2019-8641
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 3.9
impactScore: 5.9
version: 3.1

Trust: 1.0

sources: VULHUB: VHN-160076 // VULMON: CVE-2019-8641 // CNNVD: CNNVD-201907-1207 // NVD: CVE-2019-8641

PROBLEMTYPE DATA

problemtype:CWE-125

Trust: 1.1

sources: VULHUB: VHN-160076 // NVD: CVE-2019-8641

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201907-1207

TYPE

buffer error

Trust: 0.6

sources: CNNVD: CNNVD-201907-1207

EXPLOIT AVAILABILITY

sources: VULMON: CVE-2019-8641

PATCH

title:Multiple Apple product Foundation Fix for component buffer error vulnerabilityurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=95374

Trust: 0.6

title:Apple: watchOS 6url:https://vulmon.com/vendoradvisory?qidtp=apple_security_advisories&qid=2f95765b5c656212723dfc616412913c

Trust: 0.1

title:Apple: watchOS 5.3.2url:https://vulmon.com/vendoradvisory?qidtp=apple_security_advisories&qid=7bfc67b4cba180bc8bb39ab1015b7b76

Trust: 0.1

title:Apple: macOS Mojave 10.14.6 Supplemental Update 2, Security Update 2019-005 High Sierra, and Security Update 2019-005 Sierraurl:https://vulmon.com/vendoradvisory?qidtp=apple_security_advisories&qid=16621782043d4cd6566132af980595bf

Trust: 0.1

title:Apple: iOS 12.4.2url:https://vulmon.com/vendoradvisory?qidtp=apple_security_advisories&qid=e93f44c368f871abee1cb7cfabae22e1

Trust: 0.1

title:Apple: iOS 13url:https://vulmon.com/vendoradvisory?qidtp=apple_security_advisories&qid=4695fc7f06ec6c2c892e95155917cc54

Trust: 0.1

title:Apple: iOS 12.4url:https://vulmon.com/vendoradvisory?qidtp=apple_security_advisories&qid=54f5291a603c0e14126d432bc394c449

Trust: 0.1

title:Apple: watchOS 5.3url:https://vulmon.com/vendoradvisory?qidtp=apple_security_advisories&qid=d48e11572df23550369c06d93cff14df

Trust: 0.1

title:Apple: macOS Mojave 10.14.6, Security Update 2019-004 High Sierra, Security Update 2019-004 Sierraurl:https://vulmon.com/vendoradvisory?qidtp=apple_security_advisories&qid=5fc71a350006b04cf3e74ceb0c3eae18

Trust: 0.1

title:Apple: tvOS 12.4url:https://vulmon.com/vendoradvisory?qidtp=apple_security_advisories&qid=5124964b52d27cf3ae90311ca7a0fd80

Trust: 0.1

title:CVE-2019-8641-reproductionurl:https://github.com/ire33164/CVE-2019-8641-reproduction

Trust: 0.1

title:awesome-ios-security-cnurl:https://github.com/satan1a/awesome-ios-security-cn

Trust: 0.1

sources: VULMON: CVE-2019-8641 // CNNVD: CNNVD-201907-1207

EXTERNAL IDS

db:NVDid:CVE-2019-8641

Trust: 3.0

db:BIDid:109332

Trust: 0.9

db:PACKETSTORMid:155222

Trust: 0.7

db:CNNVDid:CNNVD-201907-1207

Trust: 0.7

db:PACKETSTORMid:153723

Trust: 0.6

db:AUSCERTid:ESB-2019.3642

Trust: 0.6

db:AUSCERTid:ESB-2019.2746

Trust: 0.6

db:EXPLOIT-DBid:47415

Trust: 0.6

db:EXPLOIT-DBid:47608

Trust: 0.6

db:PACKETSTORMid:154639

Trust: 0.2

db:PACKETSTORMid:154640

Trust: 0.2

db:PACKETSTORMid:155064

Trust: 0.2

db:PACKETSTORMid:154589

Trust: 0.1

db:PACKETSTORMid:154643

Trust: 0.1

db:PACKETSTORMid:154641

Trust: 0.1

db:CNVDid:CNVD-2020-14261

Trust: 0.1

db:VULHUBid:VHN-160076

Trust: 0.1

db:VULMONid:CVE-2019-8641

Trust: 0.1

db:PACKETSTORMid:154054

Trust: 0.1

db:PACKETSTORMid:153726

Trust: 0.1

db:PACKETSTORMid:155062

Trust: 0.1

db:PACKETSTORMid:154056

Trust: 0.1

db:PACKETSTORMid:153711

Trust: 0.1

db:PACKETSTORMid:154057

Trust: 0.1

sources: VULHUB: VHN-160076 // VULMON: CVE-2019-8641 // BID: 109332 // PACKETSTORM: 154639 // PACKETSTORM: 154054 // PACKETSTORM: 154640 // PACKETSTORM: 153726 // PACKETSTORM: 155064 // PACKETSTORM: 155062 // PACKETSTORM: 154056 // PACKETSTORM: 153711 // PACKETSTORM: 154057 // CNNVD: CNNVD-201907-1207 // NVD: CVE-2019-8641

REFERENCES

url:https://support.apple.com/ht210588

Trust: 1.7

url:https://support.apple.com/ht210589

Trust: 1.7

url:https://support.apple.com/ht210590

Trust: 1.7

url:https://support.apple.com/ht210606

Trust: 1.7

url:https://support.apple.com/ht210607

Trust: 1.7

url:https://nvd.nist.gov/vuln/detail/cve-2019-8641

Trust: 1.5

url:https://www.apple.com/

Trust: 0.9

url:http://www.apple.com/ios/

Trust: 0.9

url:http://www.apple.com/accessibility/tvos/

Trust: 0.9

url:http://www.apple.com/watchos-2/

Trust: 0.9

url:http://www.apple.com/ipad/

Trust: 0.9

url:http://www.apple.com/iphone/

Trust: 0.9

url:http://www.apple.com/ipodtouch/

Trust: 0.9

url:http://www.apple.com/macosx/

Trust: 0.9

url:https://lists.apple.com/archives/security-announce/2019/jul/msg00000.html

Trust: 0.9

url:https://lists.apple.com/archives/security-announce/2019/jul/msg00001.html

Trust: 0.9

url:https://lists.apple.com/archives/security-announce/2019/jul/msg00003.html

Trust: 0.9

url:https://lists.apple.com/archives/security-announce/2019/jul/msg00004.html

Trust: 0.9

url:https://support.apple.com/kb/ht201222

Trust: 0.9

url:https://www.apple.com/support/security/pgp/

Trust: 0.9

url:https://support.apple.com/ht210346

Trust: 0.6

url:https://support.apple.com/ht210351

Trust: 0.6

url:https://support.apple.com/ht210353

Trust: 0.6

url:https://support.apple.com/ht210348

Trust: 0.6

url:https://support.apple.com/en-au/ht210351

Trust: 0.6

url:https://support.apple.com/en-au/ht210606

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2019.2746/

Trust: 0.6

url:https://packetstormsecurity.com/files/153723/apple-security-advisory-2019-7-22-2.html

Trust: 0.6

url:https://vigilance.fr/vulnerability/apple-ios-12-multiple-vulnerabilities-30457

Trust: 0.6

url:https://www.exploit-db.com/exploits/47608

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2019.3642/

Trust: 0.6

url:https://www.exploit-db.com/exploits/47415

Trust: 0.6

url:https://vigilance.fr/vulnerability/apple-macos-multiple-vulnerabilities-29859

Trust: 0.6

url:https://www.securityfocus.com/bid/109332

Trust: 0.6

url:https://packetstormsecurity.com/files/155222/imessage-nssharedkeydictionary-decode-incorrect-address-read.html

Trust: 0.6

url:https://support.apple.com/en-us/ht210588

Trust: 0.6

url:https://nvd.nist.gov/vuln/detail/cve-2018-16860

Trust: 0.5

url:https://nvd.nist.gov/vuln/detail/cve-2019-8646

Trust: 0.5

url:https://nvd.nist.gov/vuln/detail/cve-2019-13118

Trust: 0.5

url:https://nvd.nist.gov/vuln/detail/cve-2019-8648

Trust: 0.5

url:https://nvd.nist.gov/vuln/detail/cve-2019-8660

Trust: 0.5

url:https://nvd.nist.gov/vuln/detail/cve-2019-8657

Trust: 0.5

url:https://nvd.nist.gov/vuln/detail/cve-2019-8662

Trust: 0.5

url:https://nvd.nist.gov/vuln/detail/cve-2019-8669

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2019-8672

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2019-8658

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2019-8647

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2019-8684

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2019-8683

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2019-8676

Trust: 0.4

url:https://www.apple.com/itunes/

Trust: 0.3

url:https://support.apple.com/kb/ht204641

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2019-8682

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2019-8665

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2019-8685

Trust: 0.3

url:https://support.apple.com/downloads/

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8663

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-9506

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8659

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8688

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8624

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8689

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8717

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8728

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8744

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8734

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8712

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8718

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8746

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8745

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8749

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8709

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8705

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8741

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8644

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8680

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8671

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8649

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8666

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8678

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8677

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8679

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8681

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8673

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2019-8691

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8695

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8692

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8694

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8693

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8656

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8667

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2018-19860

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8697

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8661

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8753

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8706

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8773

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8710

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8752

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8751

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8756

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8809

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8740

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8799

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8735

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8731

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8730

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8727

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8719

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8708

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8733

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8625

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8707

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8711

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8742

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8674

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8715

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8704

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8726

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8687

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-8686

Trust: 0.1

sources: VULHUB: VHN-160076 // BID: 109332 // PACKETSTORM: 154639 // PACKETSTORM: 154054 // PACKETSTORM: 154640 // PACKETSTORM: 153726 // PACKETSTORM: 155064 // PACKETSTORM: 155062 // PACKETSTORM: 154056 // PACKETSTORM: 153711 // PACKETSTORM: 154057 // CNNVD: CNNVD-201907-1207 // NVD: CVE-2019-8641

CREDITS

Apple

Trust: 0.9

sources: PACKETSTORM: 154639 // PACKETSTORM: 154054 // PACKETSTORM: 154640 // PACKETSTORM: 153726 // PACKETSTORM: 155064 // PACKETSTORM: 155062 // PACKETSTORM: 154056 // PACKETSTORM: 153711 // PACKETSTORM: 154057

SOURCES

db:VULHUBid:VHN-160076
db:VULMONid:CVE-2019-8641
db:BIDid:109332
db:PACKETSTORMid:154639
db:PACKETSTORMid:154054
db:PACKETSTORMid:154640
db:PACKETSTORMid:153726
db:PACKETSTORMid:155064
db:PACKETSTORMid:155062
db:PACKETSTORMid:154056
db:PACKETSTORMid:153711
db:PACKETSTORMid:154057
db:CNNVDid:CNNVD-201907-1207
db:NVDid:CVE-2019-8641

LAST UPDATE DATE

2024-10-27T19:55:06.410000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-160076date:2020-02-28T00:00:00
db:VULMONid:CVE-2019-8641date:2020-02-28T00:00:00
db:BIDid:109332date:2019-07-22T00:00:00
db:CNNVDid:CNNVD-201907-1207date:2021-10-29T00:00:00
db:NVDid:CVE-2019-8641date:2020-02-28T14:15:09.810

SOURCES RELEASE DATE

db:VULHUBid:VHN-160076date:2019-12-18T00:00:00
db:VULMONid:CVE-2019-8641date:2019-12-18T00:00:00
db:BIDid:109332date:2019-07-22T00:00:00
db:PACKETSTORMid:154639date:2019-09-27T13:01:11
db:PACKETSTORMid:154054date:2019-08-14T18:32:22
db:PACKETSTORMid:154640date:2019-09-27T14:02:22
db:PACKETSTORMid:153726date:2019-07-23T02:22:22
db:PACKETSTORMid:155064date:2019-11-01T17:09:58
db:PACKETSTORMid:155062date:2019-11-01T17:08:23
db:PACKETSTORMid:154056date:2019-08-14T20:32:22
db:PACKETSTORMid:153711date:2019-07-22T20:32:22
db:PACKETSTORMid:154057date:2019-08-14T21:21:11
db:CNNVDid:CNNVD-201907-1207date:2019-07-22T00:00:00
db:NVDid:CVE-2019-8641date:2019-12-18T18:15:30.867