CVE-2019-8506

A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12.2, watchOS 5.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to arbitrary code execution.
References
Link Resource
https://support.apple.com/HT209599 Vendor Advisory Release Notes
https://support.apple.com/HT209601 Vendor Advisory Release Notes
https://support.apple.com/HT209602 Vendor Advisory Release Notes
https://support.apple.com/HT209603 Vendor Advisory Release Notes
https://support.apple.com/HT209604 Vendor Advisory Release Notes
https://support.apple.com/HT209605 Vendor Advisory Release Notes
https://support.apple.com/HT209599 Vendor Advisory Release Notes
https://support.apple.com/HT209601 Vendor Advisory Release Notes
https://support.apple.com/HT209602 Vendor Advisory Release Notes
https://support.apple.com/HT209603 Vendor Advisory Release Notes
https://support.apple.com/HT209604 Vendor Advisory Release Notes
https://support.apple.com/HT209605 Vendor Advisory Release Notes
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:icloud:*:*:*:*:*:windows:*:*
cpe:2.3:a:apple:itunes:*:*:*:*:*:windows:*:*
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*

History

28 Feb 2025, 14:44

Type Values Removed Values Added
References () https://support.apple.com/HT209599 - Vendor Advisory () https://support.apple.com/HT209599 - Vendor Advisory, Release Notes
References () https://support.apple.com/HT209601 - Vendor Advisory () https://support.apple.com/HT209601 - Vendor Advisory, Release Notes
References () https://support.apple.com/HT209602 - Vendor Advisory () https://support.apple.com/HT209602 - Vendor Advisory, Release Notes
References () https://support.apple.com/HT209603 - Vendor Advisory () https://support.apple.com/HT209603 - Vendor Advisory, Release Notes
References () https://support.apple.com/HT209604 - Vendor Advisory () https://support.apple.com/HT209604 - Vendor Advisory, Release Notes
References () https://support.apple.com/HT209605 - Vendor Advisory () https://support.apple.com/HT209605 - Vendor Advisory, Release Notes

Information

Published : 2019-12-18 18:15

Updated : 2025-02-28 14:44


NVD link : CVE-2019-8506

Mitre link : CVE-2019-8506

CVE.ORG link : CVE-2019-8506


JSON object : View

Products Affected

redhat

  • enterprise_linux_workstation
  • enterprise_linux_desktop
  • enterprise_linux_server

apple

  • itunes
  • watchos
  • tvos
  • safari
  • iphone_os
  • icloud
CWE
CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')