PT-2020-11262 · Apple · Macos Mojave+5

Trevor Spiniolas

+1

·

Published

2020-10-27

·

Updated

2020-10-29

·

CVE-2019-8538

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions watchOS versions prior to 5.2 macOS Mojave versions prior to 10.14.4 Security Update versions prior to 2019-002 for High Sierra Security Update versions prior to 2019-002 for Sierra iOS versions prior to 12.2
Description A denial of service issue was addressed with improved validation. Processing a maliciously crafted vcf file may lead to a denial of service.
Recommendations For watchOS versions prior to 5.2, update to watchOS 5.2 to resolve the issue. For macOS Mojave versions prior to 10.14.4, update to macOS Mojave 10.14.4 to resolve the issue. For Security Update versions prior to 2019-002 for High Sierra, apply Security Update 2019-002 to resolve the issue. For Security Update versions prior to 2019-002 for Sierra, apply Security Update 2019-002 to resolve the issue. For iOS versions prior to 12.2, update to iOS 12.2 to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2019-8538

Affected Products

High Sierra
Security Update
Sierra
Ios
Macos Mojave
Watchos