CVE-2019-6218: Input Validation
libxpc. A memory corruption issue was addressed with improved input validation.
Other sources
A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS 12.1.2. A malicious application may be able to execute arbitrary code with kernel privileges.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2019-6235
- CVE-2019-6231
- CVE-2019-6230
- CVE-2019-6224
- CVE-2019-6214
- CVE-2019-6225
- CVE-2019-6210
- CVE-2019-6205
- CVE-2019-6213
- CVE-2019-6209
- CVE-2019-6208
- CVE-2019-6218
- CVE-2018-20346
- CVE-2018-20505
- CVE-2018-20506
- CVE-2019-6227
- CVE-2019-6233
- CVE-2019-6234
- CVE-2019-6229
- CVE-2019-6215
- CVE-2019-6212
- CVE-2019-6216
- CVE-2019-6217
- CVE-2019-6226
- CVE-2019-8570
- CVE-2019-6200
- CVE-2019-6202
- CVE-2019-6221
- CVE-2018-4467
- CVE-2018-4452
- CVE-2019-6219
- CVE-2019-6220
- CVE-2019-6211
- CVE-2019-6206
- CVE-2019-6228
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-6218.
What is the severity rating of CVE-2019-6218?
CVE-2019-6218 has a severity rating of 7.8 (Critical).
Which software versions are affected by CVE-2019-6218?
iOS versions up to 12.1.3, macOS Mojave versions up to 10.14.3, and tvOS versions up to 12.1.2 are affected by CVE-2019-6218.
How was CVE-2019-6218 fixed?
CVE-2019-6218 was fixed with improved input validation in iOS 12.1.3, macOS Mojave 10.14.3, and tvOS 12.1.2.
What is the potential impact of CVE-2019-6218?
A malicious application may be able to execute arbitrary code with kernel privileges through CVE-2019-6218.