A logic issue was addressed with improved validation. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to universal cross site scripting.
References
Link | Resource |
---|---|
https://support.apple.com/HT209599 | Vendor Advisory |
https://support.apple.com/HT209601 | Vendor Advisory |
https://support.apple.com/HT209603 | Vendor Advisory |
https://support.apple.com/HT209604 | Vendor Advisory |
https://support.apple.com/HT209605 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: apple
Published: 2019-12-18T17:33:17
Updated: 2019-12-18T17:33:17
Reserved: 2019-02-18T00:00:00
Link: CVE-2019-8551
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-12-18T18:15:25.537
Modified: 2019-12-30T18:16:49.343
Link: CVE-2019-8551
JSON object: View
Redhat Information
No data.
CWE