2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-8572CRITICAL9.8A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Fir...
CVE-2019-8570MEDIUM6.5A logic issue was addressed with improved state management. This issue is fixed in iOS 12.1.3, iCloud for Windows 7.10, ...
CVE-2019-8569MEDIUM6.7A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.5, Secu...
CVE-2019-8564HIGH7.5A logic issue was addressed with improved validation. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-...
CVE-2019-8547CRITICAL9.8An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input ...
CVE-2019-8539HIGH7.8A memory initialization issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.6, ...
CVE-2019-8538MEDIUM5.5A denial of service issue was addressed with improved validation. This issue is fixed in watchOS 5.2, macOS Mojave 10.14...
CVE-2019-8534MEDIUM6.7A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue is f...
CVE-2019-8532MEDIUM5.5A permissions issue was addressed by removing vulnerable code and adding additional checks. This issue is fixed in watch...
CVE-2019-8528MEDIUM6.7A use after free issue was addressed with improved memory management. This issue is fixed in watchOS 5.2, macOS Mojave 1...
CVE-2019-8525MEDIUM6.7A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.5, Sec...
CVE-2019-8509HIGH7.8This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Catalina 10.15.1, Security Update...
CVE-2019-7291MEDIUM6.5A denial of service issue was addressed with improved memory handling. This issue is fixed in AirPort Base Station Firmw...
CVE-2019-7288CRITICAL9.8The issue was addressed with improved validation on the FaceTime server. This issue is fixed in macOS Mojave 10.14.3 Sup...
CVE-2019-6238HIGH7.8A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. T...
CVE-2019-14719HIGH7.8Verifone MX900 series Pinpad Payment Terminals with OS 30251000 allow multiple arbitrary command injections, as demonstr...
CVE-2019-14718MEDIUM6.7Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have Insecure Permissions, with resultant svc_netcontrol...
CVE-2019-14717HIGH7.8Verifone Verix OS on VerixV Pinpad Payment Terminals with QT000530 have a Buffer Overflow via the Run system call.
CVE-2019-14716MEDIUM6.6Verifone VerixV Pinpad Payment Terminals with QT000530 have an undocumented physical access mode (aka VerixV shell.out).
CVE-2019-14715MEDIUM6.8Verifone Pinpad Payment Terminals allow undocumented physical access to the system via an SBI bootloader memory write op...
CVE-2019-14713MEDIUM5.5Verifone MX900 series Pinpad Payment Terminals with OS 30251000 allow installation of unsigned packages.
CVE-2019-14712HIGH7.8Verifone VerixV Pinpad Payment Terminals with QT000530 allow bypass of integrity and origin control for S1G file generat...
CVE-2019-14711HIGH7Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have a race condition for RBAC bypass.
CVE-2019-17007HIGH7.5In Network Security Services before 3.44, a malformed Netscape Certificate Sequence can cause NSS to crash, resulting in...
CVE-2019-17006CRITICAL9.8In Network Security Services (NSS) before 3.46, several cryptographic primitives had missing length checks. In cases whe...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now