First published: Thu Sep 19 2019(Updated: )
Audio. An out-of-bounds read was addressed with improved input validation.
Credit: Anonymous Trend Micro Zero Day InitiativeAnonymous Trend Micro Zero Day InitiativeAnonymous Trend Micro Zero Day InitiativeAnonymous Trend Micro Zero Day InitiativeAnonymous Trend Micro Zero Day Initiative product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <13.1 | 13.1 |
Apple iPadOS | <13.1 | 13.1 |
Apple iPadOS | <13.1 | |
Apple iPhone OS | <13.1 | |
Apple Mac OS X | <10.15.1 | |
Apple tvOS | <13.0 | |
Apple tvOS | <13 | 13 |
Apple watchOS | <6 | 6 |
Apple macOS Catalina | <10.15 | 10.15 |
Apple macOS Catalina | <10.15.1 | 10.15.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2019-8850 is a vulnerability that allows an attacker to perform an out-of-bounds read through a malicious audio file.
The severity of CVE-2019-8850 is medium, with a CVSS score of 5.5.
macOS Catalina 10.15, iOS 13.1, iPadOS 13.1, tvOS 13, and watchOS 6 are affected by CVE-2019-8850.
To fix CVE-2019-8850, update your operating system to macOS Catalina 10.15.1, iOS 13.1, iPadOS 13.1, tvOS 13, or watchOS 6.
You can find more information about CVE-2019-8850 on the Apple support website.