PT-2019-19209 · Apple · Ios+1

Published

2019-12-18

·

Updated

2019-12-26

·

CVE-2019-8779

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions iOS versions prior to 13.1.1 iPadOS versions prior to 13.1.1
Description A logic issue applied the incorrect restrictions, which may affect third party app extensions by not receiving the correct sandbox restrictions. This issue was addressed by updating the logic to apply the correct restrictions.
Recommendations For iOS versions prior to 13.1.1, update to iOS 13.1.1 to resolve the issue. For iPadOS versions prior to 13.1.1, update to iPadOS 13.1.1 to resolve the issue.

Fix

Exposure of Resource to Wrong Sphere

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-8779

Affected Products

Ios
Ipados