CVE-2019-8514 EXPLOIT
7.8
HIGH · CVSS 3.1 · EPSS 3.1% (pctl 87)
Patch early
A public exploit exists.
Description
A logic issue was addressed with improved state management. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. An application may be able to gain elevated privileges.
Scoring
| CVSS | 7.8 (HIGH, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
| EPSS | 3.1% — more likely to be exploited than 87% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2019-12-18 |
| Last modified | 2026-06-17 |
Affected (4)
| Vendor | Product |
|---|---|
| apple | iphone os |
| apple | mac os x |
| apple | tvos |
| apple | watchos |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | iOS < 12.2 / macOS < 10.14.4 XNU - pidversion Increment During execve is Unsafe | 2019-04-03 |
References
→ the Explorer · watch your stack · NVD