A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1. A malicious application may be able to execute arbitrary code with system privileges.
No PoCs from references.
- https://github.com/1nteger-c/CVE-2019-8605
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Embodimentgeniuslm3/glowing-adventure
- https://github.com/Ostorlab/KEV
- https://github.com/Ostorlab/known_exploited_vulnerbilities_detectors
- https://github.com/WRFan/jailbreak10.3.3
- https://github.com/alphaSeclab/sec-daily-2019
- https://github.com/developer3000S/PoC-in-GitHub
- https://github.com/fengjixuchui/iOS-macOS-Vul-Analysis-Articles
- https://github.com/houjingyi233/macOS-iOS-system-security
- https://github.com/jsherman212/used_sock
- https://github.com/staturnzz/lyncis
- https://github.com/staturnzz/socket