cbcvebase.
CVE-2019-8898
published 2020-10-27

CVE-2019-8898: An information disclosure issue existed in the handling of the Storage Access API. This issue was addressed with improved logic. This issue is fixed in iOS…

medium4.3CVSS 3.1
AVNACLPRNUIRSUCLINAN
An information disclosure issue existed in the handling of the Storage Access API. This issue was addressed with improved logic. This issue is fixed in iOS 13.3 and iPadOS 13.3, tvOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows. Visiting a maliciously crafted website may reveal sites a user has visited.

Affected

13 ranges
VendorProductVersion rangeFixed in
appleios_13.3_and_ipados
appleios_and_ipados>= unspecified < 13.313.3
appleipados< 13.313.3
appleiphone_os< 13.313.3
appleitunes< 12.10.312.10.3
appleitunes_12.10.3_for_windows
appleitunes_for_windows>= unspecified < 12.1012.10
applesafari< 13.0.413.0.4
applesafari
applesafari>= unspecified < 13.013.0
appletvos< 13.313.3
appletvos
appletvos>= unspecified < 13.313.3