CVE-2019-8766: High severity tvos vulnerability
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in watchOS 6.1, iCloud for Windows 11.0. Processing maliciously crafted web content may lead to arbitrary code execution.
Other sources
WebKit. Multiple memory corruption issues were addressed with improved memory handling.
WebKitGTK Security Advisory WSA-2019-0006 describes the following issue:
CVE-2019-8766
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Description: Multiple memory corruption issues were addressed with improved memory handling.
Versions affected: WebKitGTK before 2.26.0 and WPE WebKit before 2.26.0.
— Red Hat
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2019-8747
- CVE-2019-8706
- CVE-2019-8850
- CVE-2019-8753
- CVE-2019-8592
- CVE-2019-8741
- CVE-2019-8705
- CVE-2019-8746
- CVE-2019-8718
- CVE-2019-8703
- CVE-2019-8740
- CVE-2019-8809
- CVE-2019-8712
- CVE-2019-8744
- CVE-2019-8709
- CVE-2019-8717
- CVE-2019-8780
- CVE-2019-8704
- CVE-2019-8749
- CVE-2019-8756
- CVE-2019-8750
- CVE-2019-8799
- CVE-2019-8745
- CVE-2019-8831
- CVE-2019-8625
- CVE-2019-8719
- CVE-2019-8764
- CVE-2019-8707
- CVE-2019-8710
- CVE-2019-8726
- CVE-2019-8728
- CVE-2019-8733
- CVE-2019-8734
- CVE-2019-8735
- CVE-2019-8743
- CVE-2019-8751
- CVE-2019-8752
- CVE-2019-8763
- CVE-2019-8765
- CVE-2019-8766
- CVE-2019-8773
- CVE-2019-8762
- CVE-2020-9932
- CVE-2019-8854
- CVE-2019-8787
- CVE-2019-8796
- CVE-2019-8803
- CVE-2019-8785
- CVE-2019-8797
- CVE-2017-7152
- CVE-2019-8798
- CVE-2019-8794
- CVE-2019-8786
- CVE-2019-8829
- CVE-2019-8775
- CVE-2019-8808
- CVE-2019-8811
- CVE-2019-8812
- CVE-2019-8816
- CVE-2019-8820
- CVE-2019-8825
- CVE-2019-8654
- CVE-2019-8725
- CVE-2019-8771
- CVE-2019-8774
- CVE-2019-8901
- CVE-2019-8769
Frequently Asked Questions
What is CVE-2019-8766?
CVE-2019-8766 is a vulnerability that affects WebKit, which is the browser engine used by Apple Safari, iOS, iPadOS, and other Apple products.
How severe is CVE-2019-8766?
CVE-2019-8766 has a severity score of 8.8 out of 10, indicating a high severity.
Which software versions are affected by CVE-2019-8766?
Versions up to and excluding WebKitGTK 2.26.0, watchOS 6.1, and iCloud for Windows 11.0 are affected by CVE-2019-8766.
How can I fix CVE-2019-8766?
To fix CVE-2019-8766, update to WebKitGTK 2.26.0, watchOS 6.1, or iCloud for Windows 11.0 or later versions.
Where can I find more information about CVE-2019-8766?
More information about CVE-2019-8766 can be found on the Apple support website: [https://support.apple.com/en-us/HT210603](https://support.apple.com/en-us/HT210603), [https://support.apple.com/en-us/HT210604](https://support.apple.com/en-us/HT210604), [https://support.apple.com/en-us/HT210635](https://support.apple.com/en-us/HT210635).