VDB
CVE-2019-8746
CVE-2019-8746
PUBLISHED
CVSS 9.800000190734863 CRITICAL
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15, iOS 13, iCloud for Windows 7.14, iCloud for Windows 10.7, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, watchOS 6, iTunes 12.10.1 for Windows. A remote attacker may be able to cause unexpected application termination or arbitrary code execution.
EPSS 3.00% · 86.1th percentile
Risk Scores
CVSS 3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
3.00%
86.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| apple | itunes | 0 |
| Apple | watchOS | unspecified |
| apple | watchos | 0 |
| apple | mac_os_x | 0 |
| Apple | tvOS | unspecified |
| apple | tvos | 0 |
| Apple | iOS | unspecified |
| apple | icloud | 0, 10.0 |
| Apple | macOS | unspecified, *, unspecified |
| apple | iphone_os | 0 |
Timeline
- Oct 27, 2020 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 28, 2022 EPSS Score
- May 2, 2022 EPSS Score
- Jul 3, 2022 EPSS Score
- Sep 5, 2022 EPSS Score
- Nov 6, 2022 EPSS Score
- Jan 8, 2023 EPSS Score
References
- https://support.apple.com/en-us/HT210606 url
- https://support.apple.com/en-us/HT210637 url
- https://support.apple.com/en-us/HT210634 url
- https://support.apple.com/en-us/HT210722 url
- https://support.apple.com/en-us/HT210604 url
- https://support.apple.com/en-us/HT210607 url
- https://support.apple.com/en-us/HT210635 url
- https://support.apple.com/en-us/HT210636 url
- https://nvd.nist.gov/vuln/detail/CVE-2019-8746 advisory