CVE-2019-8645Apple Macos vulnerability

3 documents3 sources
Severity
6.5MEDIUMNVD
EPSS
0.3%
top 44.32%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 27
Latest updateMay 24

Description

An issue existed in the handling of encrypted Mail. This issue was addressed with improved isolation of MIME in Mail. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. An attacker in a privileged network position may be able to intercept the contents of S/MIME-encrypted e-mail.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages3 packages

🔴Vulnerability Details

1
GHSA
GHSA-m37v-2pxx-f5hm: An issue existed in the handling of encrypted Mail2022-05-24

📋Vendor Advisories

1
Apple
CVE-2019-8645: macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra2019-03-25
CVE-2019-8645 — Apple Macos vulnerability | cvebase