⚠ Actively exploited
Added to CISA KEV on 2022-06-27. Federal agencies required to patch by 2022-07-18. Required action: Apply updates per vendor instructions..

CVE-2019-8605Use After Free in Apple Macos

CWE-416Use After Free18 documents11 sources
Severity
7.8HIGHNVD
EPSS
12.1%
top 6.18%
CISA KEV
KEV
Added 2022-06-27
Due 2022-07-18
Exploit
Exploited in wild
Active exploitation observed
Timeline
PublishedDec 18
KEV addedJun 27
KEV dueJul 18
CISA Required Action: Apply updates per vendor instructions.

Description

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1. A malicious application may be able to execute arbitrary code with system privileges.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages8 packages

CVEListV5apple/tvosunspecifiedtvOS 12.3
NVDapple/tvos< 12.3
CVEListV5apple/macosunspecifiedmacOS Mojave 10.14.5
CVEListV5apple/watchosunspecifiedwatchOS 5.2.1
NVDapple/watchos< 5.2.1

🔴Vulnerability Details

7
GHSA
GHSA-rv43-fj24-7hpc: A use after free issue was addressed with improved memory management2022-05-24
Project0
Designing sockfuzzer, a network syscall fuzzer for XNU - Project Zero2021-04-01
Project0
A survey of recent iOS kernel exploits - Project Zero2020-06-01
Project0
Remote iPhone Exploitation Part 3: From Memory Corruption to JavaScript and Back -- Gaining Code Execution - Project Zero2020-01-01
CVEList
CVE-2019-8605: A use after free issue was addressed with improved memory management2019-12-18

💥Exploits & PoCs

2
Exploit-DB
iOS < 12.4.1 - 'Jailbreak' Local Privilege Escalation2019-09-23
Exploit-DB
Apple macOS < 10.14.5 / iOS < 12.3 XNU - 'in6_pcbdetach' Stale Pointer Use-After-Free2019-05-21

📋Vendor Advisories

5
CISA
Apple Multiple Products Use-After-Free Vulnerability2022-06-27
Apple
CVE-2019-8605: tvOS 12.4.12019-08-26
Apple
CVE-2019-8605: macOS Mojave 10.14.6 Supplemental Update2019-08-26
Apple
CVE-2019-8605: iOS 12.4.12019-08-26
Apple
CVE-2019-8605: watchOS 5.2.12019-05-13

🕵️Threat Intelligence

2
Trendmicro
Op Poisoned News Targets Hong Kong Users with Malware in Mobile News Links2020-03-24
Tenable
Apple iPhone and iPad Devices Vulnerable After Reintroduction of SockPuppet Flaw in iOS 12.4 (CVE-2019-8605)2019-08-20

📄Research Papers

1
arXiv
PTAuth: Temporal Memory Safety via Robust Points-to Authentication2020-10-26
CVE-2019-8605 — Use After Free in Apple Macos | cvebase