CVE-2019-8670: Input Validation
Published Jul 22, 2019
·Updated
Safari. An inconsistent user interface issue was addressed with improved state management.
Other sources
An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.6, Safari 12.1.2. Visiting a malicious website may lead to address bar spoofing.
Credit
Tsubasa FUJII@@reinforchu
Affected Software
5 affected componentsFixes available
Apple macOS Mojave<10.14.6
10.14.6
Apple High Sierra
Apple Sierra
Apple Safari<12.1.2
Apple iOS and macOS<10.14.6
Event History
Dec 18, 2019
CVE Published
via MITRE·05:33 PM
Data Sourced
via MITRE·05:33 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2019-8693
- CVE-2019-8656
- CVE-2018-19860
- CVE-2019-9506
- CVE-2020-10135
- CVE-2019-8661
- CVE-2019-8646
- CVE-2019-8660
- CVE-2019-8675
- CVE-2019-8696
- CVE-2019-8539
- CVE-2019-8697
- CVE-2019-8648
- CVE-2019-8663
- CVE-2019-8702
- CVE-2019-8695
- CVE-2019-8691
- CVE-2019-8692
- CVE-2018-16860
- CVE-2019-8694
- CVE-2019-13118
- CVE-2019-8662
- CVE-2019-8670
- CVE-2019-8701
- CVE-2019-8667
- CVE-2019-8657
- CVE-2019-8690
- CVE-2019-8649
- CVE-2019-8658
- CVE-2019-8644
- CVE-2019-8666
- CVE-2019-8669
- CVE-2019-8671
- CVE-2019-8672
- CVE-2019-8673
- CVE-2019-8676
- CVE-2019-8677
- CVE-2019-8678
- CVE-2019-8679
- CVE-2019-8680
- CVE-2019-8681
- CVE-2019-8683
- CVE-2019-8684
- CVE-2019-8685
- CVE-2019-8686
- CVE-2019-8687
- CVE-2019-8688
- CVE-2019-8689
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-8670.
2
What is the severity of CVE-2019-8670?
The severity of CVE-2019-8670 is medium with a CVSS score of 4.3.
3
Which software versions are affected by CVE-2019-8670?
CVE-2019-8670 affects macOS Mojave 10.14.6 and Safari 12.1.2.
4
How can this vulnerability be fixed?
To fix CVE-2019-8670, update to macOS Mojave 10.14.6 or Safari 12.1.2.
5
What is the issue addressed by CVE-2019-8670?
CVE-2019-8670 addressed an inconsistent user interface issue with improved state management in Safari.