cbcvebase.
CVE-2019-8857
published 2020-10-27

CVE-2019-8857: The issue was addressed with improved validation when an iCloud Link is created. This issue is fixed in iOS 13.3 and iPadOS 13.3. Live Photo audio and video…

PriorityP410low3.3CVSS 3.1
AVLACLPRLUINSUCLINAN
EPSS
0.29%
21.4th percentile
The issue was addressed with improved validation when an iCloud Link is created. This issue is fixed in iOS 13.3 and iPadOS 13.3. Live Photo audio and video data may be shared via iCloud links even if Live Photo is disabled in the Share Sheet carousel.

Affected

4 ranges
VendorProductVersion rangeFixed in
appleios_13.3_and_ipados
appleios_and_ipados>= unspecified < 13.313.3
appleipados< 13.313.3
appleiphone_os< 13.313.3

CVSS provenance

nvdv3.13.3LOWCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.