CVE Vulnerabilities

CVE-2019-8550

Incomplete Cleanup

Published: Dec 18, 2019 | Modified: Nov 21, 2024
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

An issue existed in the pausing of FaceTime video. The issue was resolved with improved logic. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, watchOS 5.2. A user’s video may not be paused in a FaceTime call if they exit the FaceTime app while the call is ringing.

Weakness

The product does not properly “clean up” and remove temporary or supporting resources after they have been used.

Affected Software

NameVendorStart VersionEnd Version
Iphone_osApple*12.2 (excluding)
Mac_os_xApple*10.12.6 (excluding)
Mac_os_xApple10.13 (including)10.13.6 (excluding)
Mac_os_xApple10.14 (including)10.14.4 (excluding)
Mac_os_xApple10.12.6 (including)10.12.6 (including)
Mac_os_xApple10.12.6-security_update_2017-001 (including)10.12.6-security_update_2017-001 (including)
Mac_os_xApple10.12.6-security_update_2018-001 (including)10.12.6-security_update_2018-001 (including)
Mac_os_xApple10.12.6-security_update_2018-002 (including)10.12.6-security_update_2018-002 (including)
Mac_os_xApple10.12.6-security_update_2018-003 (including)10.12.6-security_update_2018-003 (including)
Mac_os_xApple10.12.6-security_update_2018-004 (including)10.12.6-security_update_2018-004 (including)
Mac_os_xApple10.12.6-security_update_2018-005 (including)10.12.6-security_update_2018-005 (including)
Mac_os_xApple10.12.6-security_update_2018-006 (including)10.12.6-security_update_2018-006 (including)
Mac_os_xApple10.12.6-security_update_2019-001 (including)10.12.6-security_update_2019-001 (including)
Mac_os_xApple10.13.6 (including)10.13.6 (including)
Mac_os_xApple10.13.6-security_update_2018-002 (including)10.13.6-security_update_2018-002 (including)
Mac_os_xApple10.13.6-security_update_2018-003 (including)10.13.6-security_update_2018-003 (including)
Mac_os_xApple10.13.6-security_update_2019-001 (including)10.13.6-security_update_2019-001 (including)
WatchosApple*5.2 (excluding)

Potential Mitigations

References