ZeroHour

CVE-2020-9870

CVSS 3.1
8.8 high
EPSS
2%p80
Published
()
Modified
Description

A logic issue was addressed with improved validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8. An attacker with memory write capability may be able to bypass pointer authentication codes and run arbitrary code.

Vendors
apple
Products
ipados, iphone os, mac os x, tvos
Weakness
CWE-20
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.