ZeroHour

CVE-2019-8789

CVSS 3.1
5.5 medium
EPSS
1%p69
Published
()
Modified
Description

A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in iOS 13.2 and iPadOS 13.2, macOS Catalina 10.15.1. Parsing a maliciously crafted iBooks file may lead to disclosure of user information.

Vendors
apple
Products
ipados, iphone os, mac os x
Weakness
CWE-59
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In the news