KLA11490
Multiple vulnerabilities in iCloud

Обновлено: 03/06/2020
Дата обнаружения
28/05/2019
Уровень угрозы
Critical
Описание

Multiple vulnerabilities were found in iCloud. Malicious users can exploit these vulnerabilities to obtain sensitive information, execute arbitrary code, gain privileges.

Below is a complete list of vulnerabilities:

  1. An out-of-bounds read vulnerability in WebKit can be exploited remotely to obtain sensitive information;
  2. Multiple memory corruption vulnerabilities in WebKit can be exploited remotely to execute arbitrary code;
  3. An input validation issue in SQLite can be exploited remotely to gain privileges;
  4. A memory corruption vulnerability in SQLite can be exploited to execute arbitrary code;
  5. An input validation issue in SQLite can be exploited remotely to obtain sensitive information;
  6. A memory corruption vulnerability in SQLite can be exploited to gain privileges;
  7. An out-of-bounds read vulnerability in CoreText can be exploited remotely to obtain sensitive information;
Пораженные продукты

ICloud version 7.12

Решение

Update to the latest version
Download iCloud

Первичный источник обнаружения
HT210125
Оказываемое влияние
?
ACE 
[?]

OSI 
[?]

PE 
[?]
Связанные продукты
Apple iCloud
CVE-IDS
Узнай статистику распространения уязвимостей в твоем регионе