CVE-2019-6207
- EPSS 0.66%
- Veröffentlicht 18.12.2019 18:15:21
- Zuletzt bearbeitet 21.11.2024 04:46:13
An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. A malicious application may be able to ...
CVE-2019-6222
- EPSS 0.25%
- Veröffentlicht 18.12.2019 18:15:21
- Zuletzt bearbeitet 21.11.2024 04:46:15
A consistency issue was addressed with improved state handling. This issue is fixed in iOS 12.2. A website may be able to access the microphone without the microphone use indicator being shown.
CVE-2019-6237
- EPSS 0.81%
- Veröffentlicht 18.12.2019 18:15:21
- Zuletzt bearbeitet 21.11.2024 04:46:16
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, Safari 12.1.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. Processing maliciously crafted web co...
CVE-2019-7284
- EPSS 0.26%
- Veröffentlicht 18.12.2019 18:15:21
- Zuletzt bearbeitet 21.11.2024 04:47:55
This issue was addressed with improved checks. This issue is fixed in iOS 12.2. Processing a maliciously crafted mail message may lead to S/MIME signature spoofing.
CVE-2019-7285
- EPSS 1.28%
- Veröffentlicht 18.12.2019 18:15:21
- Zuletzt bearbeitet 21.11.2024 04:47:55
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to arbitrary code e...
CVE-2019-6201
- EPSS 0.75%
- Veröffentlicht 18.12.2019 18:15:20
- Zuletzt bearbeitet 21.11.2024 04:46:10
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to arbitr...
CVE-2019-6204
- EPSS 0.23%
- Veröffentlicht 18.12.2019 18:15:20
- Zuletzt bearbeitet 21.11.2024 04:46:11
A logic issue was addressed with improved validation. This issue is fixed in iOS 12.2, Safari 12.1. Enabling the Safari Reader feature on a maliciously crafted webpage may lead to universal cross site scripting.
CVE-2019-14899
- EPSS 0.05%
- Veröffentlicht 11.12.2019 15:15:14
- Zuletzt bearbeitet 21.11.2024 04:27:38
A vulnerability was discovered in Linux, FreeBSD, OpenBSD, MacOS, iOS, and Android that allows a malicious access point, or an adjacent user, to determine if a connected user is using a VPN, make positive inferences about the websites they are visiti...
CVE-2019-15165
- EPSS 1.03%
- Veröffentlicht 03.10.2019 19:15:09
- Zuletzt bearbeitet 03.12.2025 19:15:48
sf-pcapng.c in libpcap before 1.9.1 does not properly validate the PHB header length before allocating memory.
CVE-2019-9506
- EPSS 4.46%
- Veröffentlicht 14.08.2019 17:15:11
- Zuletzt bearbeitet 21.11.2024 04:51:45
The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker from influencing the key length negotiation. This allows practical brute-force attacks (aka "KNOB") tha...