CVE-2019-7286
גבוהה 7.8 מנוצלת בשטח (KEV)
ניצול פעיל מאומת — קטלוג CISA KEV
- שם
- Apple Multiple Products Memory Corruption Vulnerability
- נוסף לקטלוג
- יעד טיפול (פדרלי)
- פעולה נדרשת
- Apply updates per vendor instructions.
תיאור (מקור, אנגלית)
A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 12.1.4, macOS Mojave 10.14.3 Supplemental Update. An application may be able to gain elevated privileges.
מדדים
- CVSS 3.1
-
7.8 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 16% (אחוזון 100) נכון ל-4/8/2026
- CWE
- CWE-787
מוצרים מושפעים
apple: iphone os; apple: mac os x
קישורים
- https://support.apple.com/HT209520 Vendor Advisory
- https://support.apple.com/HT209521 Vendor Advisory
- https://support.apple.com/HT209601 Vendor Advisory
- https://support.apple.com/HT209602 Vendor Advisory
- https://support.apple.com/HT209520 Vendor Advisory
- https://support.apple.com/HT209521 Vendor Advisory
- https://support.apple.com/HT209601 Vendor Advisory
- https://support.apple.com/HT209602 Vendor Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-201… US Government Resource