An information disclosure issue existed in the handling of the Storage Access API. This issue was addressed with improved logic. This issue is fixed in iOS 13.3 and iPadOS 13.3, tvOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows. Visiting a maliciously crafted website may reveal sites a user has visited.
Advisories
Source ID Title
EUVD EUVD EUVD-2019-18287 An information disclosure issue existed in the handling of the Storage Access API. This issue was addressed with improved logic. This issue is fixed in iOS 13.3 and iPadOS 13.3, tvOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows. Visiting a maliciously crafted website may reveal sites a user has visited.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2024-08-04T21:31:37.592Z

Reserved: 2019-02-18T00:00:00

Link: CVE-2019-8898

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-10-27T21:15:13.867

Modified: 2024-11-21T04:50:37.380

Link: CVE-2019-8898

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.