CVE-2019-8605: Apple Multiple Products Use-After-Free Vulnerability
Kernel. A use after free issue was addressed with improved memory management.
Other sources
A use-after-free vulnerability in Apple iOS, macOS, tvOS, and watchOS could allow a malicious application to execute code with system privileges.
— CISA
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1. A malicious application may be able to execute arbitrary code with system privileges.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2019-8593
- CVE-2019-8585
- CVE-2019-8592
- CVE-2019-8560
- CVE-2019-8605
- CVE-2019-8576
- CVE-2019-8591
- CVE-2019-8626
- CVE-2019-8613
- CVE-2019-8664
- CVE-2019-8573
- CVE-2019-8568
- CVE-2019-8637
- CVE-2019-8577
- CVE-2019-8600
- CVE-2019-8598
- CVE-2019-8602
- CVE-2019-8574
- CVE-2019-8607
- CVE-2019-8583
- CVE-2019-8601
- CVE-2019-8622
- CVE-2019-8623
- CVE-2019-8612
- CVE-2019-8620
Frequently Asked Questions
What is CVE-2019-8605?
CVE-2019-8605 is a use-after-free vulnerability in Apple Multiple Products that allows a malicious application to execute arbitrary code with system privileges.
Which Apple products are affected by CVE-2019-8605?
Multiple Apple products are affected by CVE-2019-8605, including iOS, macOS, tvOS, and watchOS.
What is the severity of CVE-2019-8605?
CVE-2019-8605 has a severity rating of critical.
How can I fix CVE-2019-8605?
To fix CVE-2019-8605, update your iOS device to version 12.3 or later, update macOS to version 10.14.5 or later, update tvOS to version 12.3 or later, and update watchOS to version 5.2.1 or later.
Where can I find more information about CVE-2019-8605?
You can find more information about CVE-2019-8605 on the Apple support website. (Reference: https://support.apple.com/HT210118, https://support.apple.com/HT210119, https://support.apple.com/HT210120)