KLA11527
Multiple vulnerabilities in Apple iCloud
Обновлено: 26/07/2019
Дата обнаружения
25/07/2019
Уровень угрозы
Critical
Описание

Multiple vulnerabilities were found in iCloud. Malicious users can exploit these vulnerabilities to execute arbitrary code, perform cross-site scripting attack, obtain sensitive information.

Below is a complete list of vulnerabilities:

  1. A stack overflow vulnerability in libxslt can be exploited remotely to obtain sensitive information;
  2. Multiple memory corruption vulnerabilities in WebKit can be exploited remotely via specially crafted web content to execute arbitrary code;
  3. Multiple logic issues in WebKit can be exploited remotely via specially crafted web content to perform cross-site scripting attacks;
Пораженные продукты

Apple iCloud earlier than 10.6

Решение

Update to the latest version
Download iCloud

Первичный источник обнаружения
HT210358
Оказываемое влияние
?
ACE 
[?]

OSI 
[?]

XSS/CSS 
[?]
Связанные продукты
Apple iCloud
CVE-IDS
CVE-2019-86840.0Unknown
CVE-2019-86490.0Unknown
CVE-2019-86860.0Unknown
CVE-2019-86780.0Unknown
CVE-2019-86730.0Unknown
CVE-2019-86880.0Unknown
CVE-2019-86760.0Unknown
CVE-2019-131180.0Unknown
CVE-2019-86900.0Unknown
CVE-2019-86690.0Unknown
CVE-2019-86810.0Unknown
CVE-2019-86440.0Unknown
CVE-2019-86660.0Unknown
CVE-2019-86720.0Unknown
CVE-2019-86580.0Unknown
CVE-2019-86890.0Unknown
CVE-2019-86850.0Unknown
CVE-2019-86790.0Unknown
CVE-2019-86770.0Unknown
CVE-2019-86710.0Unknown
CVE-2019-86800.0Unknown
CVE-2019-86870.0Unknown
CVE-2019-86830.0Unknown