CVE-2019-8503 PUBLISHED

A logic issue was addressed with improved validation. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. A malicious website may be able to execute scripts in the context of another website.

EPSS 0.86% · 74.9th percentile

Risk Scores

EPSS Score
0.86%
74.9th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSqtwebkit-opensource-src5.5.1+dfsg-2ubuntu1, 5.4.2+dfsg-1ubuntu2.1, 0
Ubuntu:16.04:LTSwebkitgtk2.4.9-2ubuntu2, 0, 2.4.10-0ubuntu1
Ubuntu:20.04:LTSqtwebkit-opensource-src5.212.0~alpha3-6, 5.212.0~alpha3-3, 0
Ubuntu:18.04:LTSwebkitgtk0, 2.4.11-3, 2.4.11-3ubuntu2
Ubuntu:24.04:LTSqtwebkit-opensource-src0, 5.212.0~alpha4-34ubuntu3, 5.212.0~alpha4-34ubuntu4
Ubuntu:16.04:LTSwebkit2gtk2.16.3-0ubuntu0.16.04.1, 0, 2.8.5+dfsg1-3
Ubuntu:18.04:LTSqtwebkit-opensource-src5.9.1+dfsg-5ubuntu1, 5.9.1+dfsg-5ubuntu3, 5.212.0~alpha2-5build2
Ubuntu:16.04:LTSqtwebkit-source0, 2.3.2-0ubuntu10, 2.3.2-0ubuntu11
Ubuntu:18.04:LTSwebkit2gtk2.19.92-1, 2.19.91-1ubuntu1, 2.18.6-1
Ubuntu:18.04:LTSqtwebkit-source0, 2.3.2-0ubuntu13
Ubuntu:22.04:LTSqtwebkit-opensource-src0, 5.212.0~alpha4-12, 5.212.0~alpha4-13

Timeline

References

Open in Interactive Console →