cbcvebase.
CVE-2019-8740
published 2020-10-27

CVE-2019-8740: A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 13.1 and iPadOS 13.1, watchOS 6, tvOS 13. An application may…

PriorityP340high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
1.24%
65.9th percentile
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 13.1 and iPadOS 13.1, watchOS 6, tvOS 13. An application may be able to execute arbitrary code with kernel privileges.

Affected

15 ranges
VendorProductVersion rangeFixed in
appleios_13.1_and_ipados
appleios_and_ipados>= unspecified < 13.113.1
appleipad_os< 13.113.1
appleiphone_os< 13.113.1
appletvos< 1313
appletvos
appletvos>= unspecified < 1313
applewatchos< 6.06.0
applewatchos>= unspecified < 66
applewatchos_6
ghostsqlite3>= 0 < 3.11.0-1ubuntu1.33.11.0-1ubuntu1.3
ghostsqlite3>= 0 < 3.11.0-1ubuntu1.53.11.0-1ubuntu1.5
ghostsqlite3>= 0 < 3.22.0-1ubuntu0.23.22.0-1ubuntu0.2
ghostsqlite3>= 0 < 3.22.0-1ubuntu0.43.22.0-1ubuntu0.4
ghostsqlite3>= 0 < 3.31.1-4ubuntu0.13.31.1-4ubuntu0.1

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv7.5HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.