An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS 12.1.2, watchOS 5.1.3. A malicious application may be able to determine kernel memory layout.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/106739 | Third Party Advisory |
https://support.apple.com/HT209443 | Vendor Advisory |
https://support.apple.com/HT209446 | Vendor Advisory |
https://support.apple.com/HT209447 | Vendor Advisory |
https://support.apple.com/HT209448 | Vendor Advisory |
https://www.exploit-db.com/exploits/46285/ | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: apple
Published: 2019-03-05T16:00:00
Updated: 2019-03-06T10:57:01
Reserved: 2019-01-11T00:00:00
Link: CVE-2019-6209
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-03-05T16:29:00.793
Modified: 2019-03-06T14:12:59.723
Link: CVE-2019-6209
JSON object: View
Redhat Information
No data.
CWE