Vulnerability Details CVE-2019-8790
This issue was addresses by updating incorrect URLSession file descriptors management logic to match Swift 5.0. This issue is fixed in Swift 5.1.1 for Ubuntu. Incorrect management of file descriptors in URLSession could lead to inadvertent data disclosure.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 23.0%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 2.1
Products affected by CVE-2019-8790
-
cpe:2.3:a:apple:swift:2.2
-
cpe:2.3:a:apple:swift:2.2.1
-
cpe:2.3:a:apple:swift:3.0
-
cpe:2.3:a:apple:swift:3.0.1
-
cpe:2.3:a:apple:swift:3.0.2
-
cpe:2.3:a:apple:swift:3.1
-
cpe:2.3:a:apple:swift:3.1.1
-
cpe:2.3:a:apple:swift:4.0
-
cpe:2.3:a:apple:swift:4.0.2
-
cpe:2.3:a:apple:swift:4.0.3
-
cpe:2.3:a:apple:swift:4.1
-
cpe:2.3:a:apple:swift:4.1.1
-
cpe:2.3:a:apple:swift:4.1.2
-
cpe:2.3:a:apple:swift:5.0
-
cpe:2.3:a:apple:swift:5.1