First published: Tue Sep 24 2019(Updated: )
WebKit. Multiple memory corruption issues were addressed with improved memory handling.
Credit: found by OSS-Fuzz zhunki Codesafe Team of Legendsec at QiDongzhuo Zhao ADLab of VenustechSergei Glazunov Google Project ZeroSamuel Groß Google Project Zeroan anonymous researcher Trend Microcc Trend Micro Zero Day InitiativeJihui Lu Tencent KeenLabJunho Jang LINE Security TeamHanul Choi ABLY CorporationG. Geshev Trend Micro Zero Day InitiativeSoyeon Park SSLab at Georgia TechJunDong Xie Ant product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/webkitgtk | <2.26.0 | 2.26.0 |
tvOS | <13 | 13 |
Apple Mobile Safari | <13.0.1 | 13.0.1 |
Apple iOS, iPadOS, and watchOS | <13.1 | 13.1 |
Apple iOS, iPadOS, and watchOS | <13.1 | 13.1 |
Apple iOS, iPadOS, and watchOS | <6.1 | 6.1 |
Apple iOS, iPadOS, and watchOS | <6.1 | |
Apple iCloud | <7.14 | 7.14 |
Apple iCloud | <10.7 | 10.7 |
Apple iTunes | <12.10.1 | 12.10.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
CVE-2019-8743 is a vulnerability in WebKit that allows arbitrary code execution when processing maliciously crafted web content.
CVE-2019-8743 has a severity score of 8.8, which is considered high.
To fix CVE-2019-8743 in WatchOS, update to version 6.1 or later.
CVE-2019-8743 also affects Safari, iCloud for Windows, iTunes for Windows, tvOS, iOS, and iPadOS.
You can find more information about CVE-2019-8743 on the Apple support website: [link1], [link2], [link3].