Vulnerability Description
This issue was resolved by replacing device names with a random identifier. This issue is fixed in iOS 13.1 and iPadOS 13.1, macOS Catalina 10.15, watchOS 6, tvOS 13. An attacker in physical proximity may be able to passively observe device names in AWDL communications.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | Ipados | < 13.1 |
| Apple | Iphone Os | < 13.1 |
| Apple | Mac Os X | < 10.15 |
| Apple | Tvos | < 13.0 |
| Apple | Watchos | < 6.0 |
References
- https://support.apple.com/en-us/HT210603Release NotesVendor Advisory
- https://support.apple.com/en-us/HT210604Release NotesVendor Advisory
- https://support.apple.com/en-us/HT210607Release NotesVendor Advisory
- https://support.apple.com/en-us/HT210634Release NotesVendor Advisory
- https://support.apple.com/en-us/HT210603Release NotesVendor Advisory
- https://support.apple.com/en-us/HT210604Release NotesVendor Advisory
- https://support.apple.com/en-us/HT210607Release NotesVendor Advisory
- https://support.apple.com/en-us/HT210634Release NotesVendor Advisory
FAQ
What is CVE-2019-8799?
CVE-2019-8799 is a vulnerability with a CVSS score of 2.4 (LOW). This issue was resolved by replacing device names with a random identifier. This issue is fixed in iOS 13.1 and iPadOS 13.1, macOS Catalina 10.15, watchOS 6, tvOS 13. An attacker in physical proximity...
How severe is CVE-2019-8799?
CVE-2019-8799 has been rated LOW with a CVSS base score of 2.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-8799?
Check the references section above for vendor advisories and patch information. Affected products include: Apple Ipados, Apple Iphone Os, Apple Mac Os X, Apple Tvos, Apple Watchos.