First published: Tue Jan 22 2019(Updated: )
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 12.1.3,macOS Mojave 10.14.3,tvOS 12.1.2,watchOS 5.1.3. A malicious application may be able to break out of its sandbox.
Credit: Proteas Shrek_wzw Zhuo Liang Qihoo 360 Nirvan TeamProteas Shrek_wzw Zhuo Liang Qihoo 360 Nirvan Team product-security@apple.com Proteas Shrek_wzw Zhuo Liang Qihoo 360 Nirvan TeamProteas Shrek_wzw Zhuo Liang Qihoo 360 Nirvan Team product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple watchOS | <5.1.3 | 5.1.3 |
Apple macOS Mojave | <10.14.3 | 10.14.3 |
Apple High Sierra | ||
Apple Sierra | ||
Apple iPhone OS | <12.1.3 | |
Apple Mac OS X | <10.14.3 | |
Apple tvOS | <12.1.2 | |
Apple watchOS | <5.1.3 | |
Apple tvOS | <12.1.2 | 12.1.2 |
Apple iOS | <12.1.3 | 12.1.3 |
<12.1.3 | ||
<10.14.3 | ||
<12.1.2 | ||
<5.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2019-6230 is a memory initialization issue in CoreAnimation that was fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS 12.1.2, and watchOS 5.1.3.
CVE-2019-6230 has a severity rating of 8.6 (high).
To fix CVE-2019-6230, update your device to iOS 12.1.3, macOS Mojave 10.14.3, tvOS 12.1.2, or watchOS 5.1.3.
CoreAnimation is a framework in Apple's operating systems that provides animations and visual effects.
Yes, you can find more information about CVE-2019-6230 at the following references: [http://www.securityfocus.com/bid/106739](http://www.securityfocus.com/bid/106739), [https://support.apple.com/HT209443](https://support.apple.com/HT209443), [https://support.apple.com/HT209446](https://support.apple.com/HT209446).