First published: Mon Mar 25 2019(Updated: )
MediaLibrary. A permissions issue was addressed by removing vulnerable code and adding additional checks.
Credit: Angel Ramirez Min (Spark) Zheng Xiaolong Bai Alibaba IncAngel Ramirez Min (Spark) Zheng Xiaolong Bai Alibaba IncAngel Ramirez Min (Spark) Zheng Xiaolong Bai Alibaba Inc product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <12.2 | |
Apple watchOS | <5.2 | |
Apple tvOS | <12.2 | 12.2 |
Apple iOS | <12.2 | 12.2 |
Apple watchOS | <5.2 | 5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2019-8532 is a permissions issue that allows a malicious application to access restricted files on iOS and watchOS devices.
Devices running iOS versions up to, but not including, 12.2 and watchOS versions up to, but not including, 5.2 are affected by CVE-2019-8532.
CVE-2019-8532 has a severity rating of 5.5, which is considered medium.
To fix CVE-2019-8532, update your device to iOS 12.2 or later, or watchOS 5.2 or later.
You can find more information about CVE-2019-8532 on the Apple support website at the following links: [link1](https://support.apple.com/en-us/HT209599), [link2](https://support.apple.com/en-us/HT209602), [link3](https://support.apple.com/en-us/HT209601).