Back

HIGH KEV

webkitgtk: malicous web content leads to arbitrary code execution

Published Dec 18, 2019 ·Due May 25, 2022

Description

A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12.2, watchOS 5.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to arbitrary code execution.

Affected products

Remediation

No remediation recorded yet.

References (13)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner apple
Published Dec 18, 2019
Updated Oct 21, 2025
Reserved Feb 18, 2019

CISA Vulnrichment

Updated Jan 29, 2025

NVD

Status Analyzed
Modified Jun 17, 2026

Red Hat

Severity Moderate
Public date Apr 10, 2019
Bugzilla 1719199

ENISA EUVD

Assigner apple
Published Dec 18, 2019
Updated Oct 21, 2025
Exploited since May 4, 2022

GitHub

No data