Unrated severityNVD Advisory· Published Dec 18, 2019· Updated Aug 4, 2024
CVE-2019-8503
CVE-2019-8503
Description
A logic issue was addressed with improved validation. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. A malicious website may be able to execute scripts in the context of another website.
Affected products
23- osv-coords18 versionspkg:rpm/opensuse/webkit2gtk3&distro=openSUSE%20Leap%2015.0pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Enterprise%20Storage%204pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP4pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-BCLpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-LTSSpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP2pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP4pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP4pkg:rpm/suse/webkit2gtk3&distro=SUSE%20OpenStack%20Cloud%207
< 2.24.1-lp150.2.19.1+ 17 more
- (no CPE)range: < 2.24.1-lp150.2.19.1
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-3.24.1
- (no CPE)range: < 2.24.1-3.24.1
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-2.41.5
- (no CPE)range: < 2.24.1-2.41.5
- Range: unspecified
- Range: unspecified
- Apple/iCloud for Windowsv5Range: unspecified
- Range: unspecified
- Apple/iTunes for Windowsv5Range: unspecified
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- support.apple.com/HT209599mitrex_refsource_MISC
- support.apple.com/HT209601mitrex_refsource_MISC
- support.apple.com/HT209603mitrex_refsource_MISC
- support.apple.com/HT209604mitrex_refsource_MISC
- support.apple.com/HT209605mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.