CVE-2019-8736Improper Input Validation in Apple Macos

Severity
6.5MEDIUMNVD
EPSS
0.4%
top 42.34%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 27
Latest updateMay 24

Description

An input validation issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, macOS Catalina 10.15. An attacker in a privileged network position may be able to leak sensitive user information.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages4 packages

🔴Vulnerability Details

1
GHSA
GHSA-xg2w-h2fg-xvm7: An input validation issue was addressed with improved input validation2022-05-24

📋Vendor Advisories

2
Apple
CVE-2019-8736: macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-0062019-10-29
Apple
CVE-2019-8736: macOS Catalina 10.152019-10-07
CVE-2019-8736 — Improper Input Validation in Apple | cvebase