Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).
CVE-2019-8717 — Out-of-bounds Write in Apple Macos
Severity
7.8HIGHNVD
EPSS
0.2%
top 52.96%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedDec 18
Latest updateMay 24
Description
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15, tvOS 13. An application may be able to execute arbitrary code with kernel privileges.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9
Affected Packages9 packages
🔴Vulnerability Details
1GHSA▶
GHSA-wcgf-jrrf-r989: A memory corruption issue was addressed with improved memory handling↗2022-05-24