CVE-2019-8707: High severity tvos vulnerability
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in tvOS 13, iTunes for Windows 12.10.1, iCloud for Windows 10.7, iCloud for Windows 7.14. Processing maliciously crafted web content may lead to arbitrary code execution.
Other sources
WebKit. Multiple memory corruption issues were addressed with improved memory handling.
WebKitGTK Security Advisory WSA-2019-0005 describes the following issue:
CVE-2019-8707
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Description: Multiple memory corruption issues were addressed with improved memory handling.
Versions affected: WebKitGTK before 2.24.4 and WPE WebKit before 2.24.3.
— Red Hat
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2019-8747
- CVE-2019-8706
- CVE-2019-8850
- CVE-2019-8753
- CVE-2019-8592
- CVE-2019-8741
- CVE-2019-8705
- CVE-2019-8746
- CVE-2019-8718
- CVE-2019-8703
- CVE-2019-8740
- CVE-2019-8809
- CVE-2019-8712
- CVE-2019-8744
- CVE-2019-8709
- CVE-2019-8717
- CVE-2019-8780
- CVE-2019-8704
- CVE-2019-8749
- CVE-2019-8756
- CVE-2019-8750
- CVE-2019-8799
- CVE-2019-8745
- CVE-2019-8831
- CVE-2019-8625
- CVE-2019-8719
- CVE-2019-8764
- CVE-2019-8707
- CVE-2019-8710
- CVE-2019-8726
- CVE-2019-8728
- CVE-2019-8733
- CVE-2019-8734
- CVE-2019-8735
- CVE-2019-8743
- CVE-2019-8751
- CVE-2019-8752
- CVE-2019-8763
- CVE-2019-8765
- CVE-2019-8766
- CVE-2019-8773
- CVE-2019-8762
- CVE-2020-9932
- CVE-2019-8854
- CVE-2019-8825
- CVE-2019-8674
- CVE-2019-8711
- CVE-2019-8732
- CVE-2019-8760
- CVE-2019-8641
- CVE-2019-8742
- CVE-2019-8730
- CVE-2019-8708
- CVE-2019-8715
- CVE-2019-8731
- CVE-2019-8727
- CVE-2019-8771
- CVE-2019-8768
Frequently Asked Questions
What is CVE-2019-8707?
CVE-2019-8707 is a vulnerability in WebKit that allows arbitrary code execution.
How does CVE-2019-8707 occur?
CVE-2019-8707 occurs due to multiple memory corruption issues in WebKit.
Which software is affected by CVE-2019-8707?
CVE-2019-8707 affects WebKitGTK, Apple iTunes for Windows, Apple iCloud for Windows, Apple macOS Monterey, Apple tvOS, Apple Safari, and Apple iOS.
How can I fix CVE-2019-8707?
To fix CVE-2019-8707, update to tvOS 13, iTunes for Windows 12.10.1, iCloud for Windows 10.7, or install the patched version of WebKitGTK.
What is the severity of CVE-2019-8707?
CVE-2019-8707 has a severity rating of 8.8, which is considered high.