First published: Thu May 30 2019(Updated: )
A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to cause arbitrary code execution.
Credit: product-security@apple.com Maxime Villard Maxime Villard
Affected Software | Affected Version | How to fix |
---|---|---|
Apple AirPort Base Station Firmware Update | <7.9.1 | 7.9.1 |
Apple AirPort Base Station Firmware Update | <7.8.1 | 7.8.1 |
Apple AirPort Base Station Firmware | <7.8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2019-8572 is a vulnerability in AirPort Base Station Firmware that allows remote attackers to cause arbitrary code execution.
The severity of CVE-2019-8572 is critical with a CVSS score of 9.8.
CVE-2019-8572 can lead to a null pointer dereference vulnerability in AirPort Base Station Firmware, potentially allowing remote attackers to execute arbitrary code.
CVE-2019-8572 is fixed in AirPort Base Station Firmware updates 7.8.1 and 7.9.1. It is recommended to update the firmware to the latest version to mitigate the vulnerability.
You can find more information about CVE-2019-8572 on the Apple support website at https://support.apple.com/en-us/HT210090 and https://support.apple.com/en-us/HT210091.