First published: Mon Mar 25 2019(Updated: )
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4. A local user may be able to read kernel memory.
Credit: an anonymous researcher an anonymous researcher product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <12.2 | |
Apple Mac OS X | <10.14.4 | |
Apple macOS Mojave | <10.14.4 | 10.14.4 |
Apple High Sierra | ||
Apple Sierra | ||
Apple iOS | <12.2 | 12.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this issue is CVE-2019-8504.
The severity level of CVE-2019-8504 is medium.
This vulnerability can be exploited by a local user who may be able to read kernel memory.
iOS versions up to exclusive 12.2 and macOS versions up to exclusive 10.14.4 are affected by this vulnerability.
This vulnerability was fixed with improved memory handling in iOS 12.2 and macOS Mojave 10.14.4.