PT-2020-11262 · Apple · Macos Mojave+5
Trevor Spiniolas
+1
·
Published
2020-10-27
·
Updated
2020-10-29
·
CVE-2019-8538
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
watchOS versions prior to 5.2
macOS Mojave versions prior to 10.14.4
Security Update versions prior to 2019-002 for High Sierra
Security Update versions prior to 2019-002 for Sierra
iOS versions prior to 12.2
Description
A denial of service issue was addressed with improved validation. Processing a maliciously crafted vcf file may lead to a denial of service.
Recommendations
For watchOS versions prior to 5.2, update to watchOS 5.2 to resolve the issue.
For macOS Mojave versions prior to 10.14.4, update to macOS Mojave 10.14.4 to resolve the issue.
For Security Update versions prior to 2019-002 for High Sierra, apply Security Update 2019-002 to resolve the issue.
For Security Update versions prior to 2019-002 for Sierra, apply Security Update 2019-002 to resolve the issue.
For iOS versions prior to 12.2, update to iOS 12.2 to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
High Sierra
Security Update
Sierra
Ios
Macos Mojave
Watchos