CVE-2019-8542

Description

A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. A malicious application may be able to elevate privileges.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.48

Associated Vulnerability

VulnerabilityOS Platform
Apple iTunes (X64) (12.9.4.102)Windows
iCloud (7.11.0.19)Windows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 12.9.3Windows
Multiple Vulnerabilities are affected in Apple iTunes 12.9.3Windows
Multiple vulnerabilities are fixed in macOS Mojave 10.14.4Mac
Multiple vulnerabilities are fixed in macOS Mojave 10.14.4 Combo UpdateMac
Vulnerabilities CVE-2019-8542 are affected in Apple iTunes For Mac 12.9.3Mac
Vulnerabilities CVE-2018-20506,CVE-2019-8542 are affected in Apple iTunes For Mac 12.9.3Mac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-309323Apple iTunes (X64) (12.9.4.102)
PATCH-309326iCloud (7.11.0.19)
PATCH-602004macOS Mojave 10.14.6
PATCH-602005macOS Mojave 10.14.6 Combo Update

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234