First published: Thu Sep 19 2019(Updated: )
An authentication issue was addressed with improved state management. This issue is fixed in tvOS 13. A local user may be able to leak sensitive user information.
Credit: 王 邦 宇 (wAnyBug.Com) SAINTSEC王 邦 宇 (wAnyBug.Com) SAINTSEC product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <13 | 13 |
Apple iPhone OS | <13.0 | |
Apple tvOS | <13 | |
Apple tvOS | <13 | 13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2019-8704 is an authentication issue that was addressed with improved state management.
Yes, CVE-2019-8704 is fixed in tvOS 13.
Users of Apple iPhone OS and Apple tvOS versions up to 13 are affected by CVE-2019-8704.
CVE-2019-8704 has a severity rating of medium, with a CVSS score of 5.5.
To fix CVE-2019-8704, update your device to tvOS 13.