cve/2019/CVE-2019-6225.md

39 lines
1.9 KiB
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2019-6225](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-6225)
![](https://img.shields.io/static/v1?label=Product&message=iOS&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=macOS&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=tvOS&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3C%20iOS%2012.1.3%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Version&message=%3C%20macOS%20Mojave%2010.14.3%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Version&message=%3C%20tvOS%2012.1.2%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=A%20malicious%20application%20may%20be%20able%20to%20elevate%20privileges&color=brighgreen)
### Description
A memory corruption issue was addressed with improved validation. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS 12.1.2. A malicious application may be able to elevate privileges.
### POC
#### Reference
- https://www.exploit-db.com/exploits/46248/
#### Github
- https://github.com/0xT11/CVE-POC
- https://github.com/ARPSyndicate/cvemon
- https://github.com/HeyItskPan1c/Osiris12BykPan
- https://github.com/OpenJailbreak/voucher_swap
- https://github.com/PsychoTea/machswap
- https://github.com/PsychoTea/machswap2
- https://github.com/S0rryMyBad/poc.voucherSwap
- https://github.com/TrungNguyen1909/CVE-2019-6225-macOS
- https://github.com/developer3000S/PoC-in-GitHub
- https://github.com/fatgrass/OsirisJailbreak12
- https://github.com/geeksniper/reverse-engineering-toolkit
- https://github.com/hectorgie/PoC-in-GitHub
- https://github.com/houjingyi233/macOS-iOS-system-security
- https://github.com/iFenixx/voucher_swap-Exploit-for-iOS-12.1.2
- https://github.com/nomi-sec/PoC-in-GitHub
- https://github.com/pagazp/Chaos
- https://github.com/raystyle/jailbreak-iOS12
- https://github.com/ugksoft/OsirisJailbreak12