
CVE-2019-8852 – Apple Security Advisory 2019-12-10-3
https://notcve.org/view.php?id=CVE-2019-8852
12 Dec 2019 — A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra. An application may be able to execute arbitrary code with kernel privileges. Se abordó un problema de corrupción de la memoria con un manejo de la memoria mejorada. Este problema se corrigió en macOS Catalina versión 10.15.2, Security Update 2019-002 Mojave y Security Update 2019-007 High Sierra. • https://github.com/pattern-f/CVE-2019-8852 • CWE-787: Out-of-bounds Write •

CVE-2019-8853 – Apple Security Advisory 2019-12-10-3
https://notcve.org/view.php?id=CVE-2019-8853
12 Dec 2019 — A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Catalina 10.15.4, Security Update 2020-002 Mojave, Security Update 2020-002 High Sierra, macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra. An application may be able to read restricted memory. Se abordó un problema de comprobación con un saneamiento de entrada mejorada. Este problema se corrigió en macOS Catalina versión 10.15.4, Security Update 2020-002 Mojav... • https://support.apple.com/en-us/HT210788 • CWE-20: Improper Input Validation •

CVE-2019-8856 – Apple Security Advisory 2019-12-10-8
https://notcve.org/view.php?id=CVE-2019-8856
12 Dec 2019 — An API issue existed in the handling of outgoing phone calls initiated with Siri. This issue was addressed with improved state handling. This issue is fixed in iOS 13.3 and iPadOS 13.3, watchOS 6.1.1, macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra. Calls made using Siri may be initiated using the wrong cellular plan on devices with two active plans. Se presentó un problema de la API en el manejo de llamadas telefónicas salientes iniciadas con Siri. • https://support.apple.com/en-us/HT210785 •

CVE-2019-14899 – Apple Security Advisory 2020-11-13-3
https://notcve.org/view.php?id=CVE-2019-14899
11 Dec 2019 — A vulnerability was discovered in Linux, FreeBSD, OpenBSD, MacOS, iOS, and Android that allows a malicious access point, or an adjacent user, to determine if a connected user is using a VPN, make positive inferences about the websites they are visiting, and determine the correct sequence and acknowledgement numbers in use, allowing the bad actor to inject data into the TCP stream. This provides everything that is needed for an attacker to hijack active connections inside the VPN tunnel. Se detectó una vulne... • http://seclists.org/fulldisclosure/2020/Dec/32 • CWE-300: Channel Accessible by Non-Endpoint •

CVE-2019-8831 – Apple macOS UIFoundation Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2019-8831
26 Nov 2019 — A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15, iOS 13.1 and iPadOS 13.1, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, watchOS 6. An application may be able to execute arbitrary code with system privileges. Se abordó un problema de corrupción de la memoria con un manejo de la memoria mejorada. Este problema se corrigió en macOS Catalina versión 10.15, iOS versión 13.1 y iPadOS versión 13.1, t... • https://support.apple.com/en-us/HT210603 • CWE-787: Out-of-bounds Write •

CVE-2019-8706 – Apple Security Advisory 2019-10-29-11
https://notcve.org/view.php?id=CVE-2019-8706
01 Nov 2019 — A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15, iOS 13.1 and iPadOS 13.1, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, watchOS 6. Processing a maliciously crafted audio file may lead to arbitrary code execution. Se abordó un problema de corrupción de la memoria con una administración de estado mejorada. Este problema se corrigió en macOS Catalina versión 10.15, iOS versión 13.1 y iPadOS vers... • https://support.apple.com/en-us/HT210603 • CWE-787: Out-of-bounds Write •

CVE-2019-8708 – Apple Security Advisory 2019-10-29-6
https://notcve.org/view.php?id=CVE-2019-8708
01 Nov 2019 — A logic issue was addressed with improved restrictions. This issue is fixed in macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, macOS Catalina 10.15, iOS 13. A local user may be able to check for the existence of arbitrary files. Se abordó un problema lógico con restricciones mejoradas. Este problema se corrigió en macOS Catalina versión 10.15.1, Security Update 2019-001 y Security Update 2019-006, macOS Catalina versión 10.15, iOS versión 13. • https://support.apple.com/en-us/HT210606 •

CVE-2019-8709 – Apple Security Advisory 2019-10-29-6
https://notcve.org/view.php?id=CVE-2019-8709
01 Nov 2019 — A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, watchOS 6, iOS 13. An application may be able to execute arbitrary code with kernel privileges. Se abordó un problema de corrupción de la memoria con una administración de estado mejorada. Este problema se corrigió en macOS Catalina versión 10.15, tvOS versión 13, macOS Catalina versión 10.15.1, Secu... • https://support.apple.com/en-us/HT210604 • CWE-787: Out-of-bounds Write •

CVE-2019-8715 – Apple Security Advisory 2019-10-29-6
https://notcve.org/view.php?id=CVE-2019-8715
01 Nov 2019 — A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, macOS Catalina 10.15, iOS 13. An application may be able to execute arbitrary code with system privileges. Se abordó un problema de corrupción de la memoria con un manejo de la memoria mejorada. Este problema se corrigió en macOS Catalina versión 10.15.1, Security Update 2019-001 y Security Update 2019-006, macOS Catalina versión 1... • https://support.apple.com/en-us/HT210606 • CWE-787: Out-of-bounds Write •

CVE-2019-8716 – Apple Security Advisory 2019-10-29-2
https://notcve.org/view.php?id=CVE-2019-8716
01 Nov 2019 — A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006. An application may be able to execute arbitrary code with system privileges. Se abordó un problema de corrupción de la memoria con un manejo de la memoria mejorada. Este problema se corrigió en macOS Catalina versión 10.15.1, Security Update 2019-001 y Security Update 2019-006. • https://support.apple.com/en-us/HT210722 • CWE-787: Out-of-bounds Write •