CVE-2019-7284
published 2019-12-18CVE-2019-7284: This issue was addressed with improved checks. This issue is fixed in iOS 12.2. Processing a maliciously crafted mail message may lead to S/MIME signature…
PriorityP418medium4.3CVSS 3.1
AVNACLPRNUIRSUCNILAN
EPSS
0.82%
53.7th percentile
This issue was addressed with improved checks. This issue is fixed in iOS 12.2. Processing a maliciously crafted mail message may lead to S/MIME signature spoofing.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios | — | — |
| apple | ios | >= unspecified < iOS 12.2 | iOS 12.2 |
| apple | iphone_os | < 12.2 | 12.2 |
CVSS provenance
nvdv3.14.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-chv5-7w22-v7v3: This issue was addressed with improved checks
ghsa_unreviewed·2022-05-24
CVE-2019-7284 [MEDIUM] GHSA-chv5-7w22-v7v3: This issue was addressed with improved checks
This issue was addressed with improved checks. This issue is fixed in iOS 12.2. Processing a maliciously crafted mail message may lead to S/MIME signature spoofing.
Apple
CVE-2019-7284: iOS 12.2
vendor_apple·2019-03-25·CVSS 4.3
CVE-2019-7284 [MEDIUM] CVE-2019-7284: iOS 12.2
Apple Security Update: About the security content of iOS 12.2
Product: iOS
Version: 12.2
CVE: CVE-2019-7284
Component: Mail
Impact: Processing a maliciously crafted mail message may lead to S/MIME signature spoofing
Description: This issue was addressed with improved checks.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2019-12-18
Published