Apple Products Multiple Vulnerabilities
RISK: Medium Risk
TYPE: Operating Systems - Mac OS
Multiple vulnerabilities were identified in Apple products, a remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege, spoofing, remote code execution, disclose sensitive information, cross-site scripting and bypass security restriction on the targeted system.
[Updated 31-Oct-2019]: This Security Bulletin has been added new vulnerabilities affecting Apple Watch Series 1 and later, Apple TV 4K and Apple TV HD, iTunes and iCloud for Windows 7 and later, and iCloud for Windows 10 and via the Microsoft Store.
Impact
- Cross-Site Scripting
- Denial of Service
- Elevation of Privilege
- Remote Code Execution
- Security Restriction Bypass
- Information Disclosure
- Spoofing
System / Technologies affected
- iPhone 6s and later
- iPad Air 2 and later
- iPad mini 4 and later
- iPod touch 7th generation
- Apple Watch Series 1 and later
- Apple TV 4K and Apple TV HD
- macOS High Sierra 10.13.6
- macOS Mojave 10.14.6
- macOS Catalina 10.15
- iTunes for Windows 7 and later
- iCloud for Windows 7 and later
- iCloud for Windows 10 and via the Microsoft Store
Solutions
Before installation of the software, please visit the vendor web-site for more details.
- Apply fixes issued by the vendor:
For detail, please refer to the link below:
macOS
iOS and iPadOS
watchOS
tvOS
Safari
iTunes for Windows
iCloud for Windows
Vulnerability Identifier
- CVE-2017-7152
- CVE-2018-12152
- CVE-2018-12153
- CVE-2018-12154
- CVE-2019-8509
- CVE-2019-8706
- CVE-2019-8708
- CVE-2019-8710
- CVE-2019-8715
- CVE-2019-8716
- CVE-2019-8736
- CVE-2019-8737
- CVE-2019-8743
- CVE-2019-8744
- CVE-2019-8747
- CVE-2019-8749
- CVE-2019-8750
- CVE-2019-8756
- CVE-2019-8759
- CVE-2019-8761
- CVE-2019-8764
- CVE-2019-8765
- CVE-2019-8766
- CVE-2019-8767
- CVE-2019-8775
- CVE-2019-8782
- CVE-2019-8783
- CVE-2019-8784
- CVE-2019-8785
- CVE-2019-8786
- CVE-2019-8787
- CVE-2019-8788
- CVE-2019-8789
- CVE-2019-8793
- CVE-2019-8794
- CVE-2019-8795
- CVE-2019-8797
- CVE-2019-8798
- CVE-2019-8801
- CVE-2019-8802
- CVE-2019-8803
- CVE-2019-8804
- CVE-2019-8805
- CVE-2019-8807
- CVE-2019-8808
- CVE-2019-8811
- CVE-2019-8812
- CVE-2019-8813
- CVE-2019-8814
- CVE-2019-8815
- CVE-2019-8816
- CVE-2019-8817
- CVE-2019-8819
- CVE-2019-8820
- CVE-2019-8821
- CVE-2019-8822
- CVE-2019-8823
Source
Related Link
Share with