KLA11593
Multiple vulnerabilities in Apple iCloud
Обновлено: 26/11/2019
Дата обнаружения
07/10/2019
Уровень угрозы
Warning
Описание

Multiple vulnerabilities were found in Apple iCloud. Malicious users can exploit these vulnerabilities to execute arbitrary code, perform cross-site scripting attack, cause denial of service.

Below is a complete list of vulnerabilities:

  1. Vulnerabilitiy in WebKit can be exploited remotely via specially crafted text file to execute arbitrary code;
  2. Vulnerabilitiy in WebKit can be exploited remotely via specially crafted web content to perform cross-site scripting attacks;
  3. Vulnerabilitiy in UIFoundation can be exploited remotely via specially crafted text file to execute arbitrary code;
  4. Vulnerabilitiy in CoreCrypto can be exploited remotely to cause denial of service;
  5. Vulnerabilitiy in CoreMedia can be exploited remotely via specially crafted web content to execute arbitrary code;
  6. Vulnerabilitiy in Foundation can be exploited remotely to execute arbitrary code;
  7. A memory corruption vulnerability in libxml2 can be exploited remotely to execute arbitrary code;
Пораженные продукты

Apple iCloud earlier than 10.7
Apple iCloud earlier than 7.14

Решение

Update to the latest version
Download iCloud

Первичный источник обнаружения
HT210636
HT210637
Оказываемое влияние
?
ACE 
[?]

DoS 
[?]

XSS/CSS 
[?]
Связанные продукты
Apple iCloud
CVE-IDS
CVE-2019-87260.0Unknown
CVE-2019-87330.0Unknown
CVE-2019-87070.0Unknown
CVE-2019-87190.0Unknown
CVE-2019-87450.0Unknown
CVE-2019-86250.0Unknown
CVE-2019-87350.0Unknown
CVE-2019-87630.0Unknown
CVE-2019-87410.0Unknown
CVE-2019-88250.0Unknown
CVE-2019-87460.0Unknown
CVE-2019-87490.0Unknown
CVE-2019-87560.0Unknown
CVE-2019-87640.0Unknown
CVE-2019-87280.0Unknown
CVE-2019-87340.0Unknown
CVE-2019-87430.0Unknown
CVE-2019-87510.0Unknown
CVE-2019-87520.0Unknown
CVE-2019-87650.0Unknown
CVE-2019-87730.0Unknown
CVE-2019-87620.0Unknown