
CVE-2020-15969 – chromium-browser: Use after free in WebRTC
https://notcve.org/view.php?id=CVE-2020-15969
13 Oct 2020 — Use after free in WebRTC in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Un uso de la memoria previamente liberada en WebRTC en Google Chrome anterior a versión 86.0.4240.75, permitía a un atacante remoto explotar potencialmente una corrupción de la pila por medio de una página HTML diseñada macOS Big Sur 11.1, Security Update 2020-001 Catalina, and Security Update 2020-007 Mojave address buffer overflow, bypass, code execution... • http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00016.html • CWE-416: Use After Free CWE-787: Out-of-bounds Write •

CVE-2020-9961 – Apple Security Advisory 2020-11-13-3
https://notcve.org/view.php?id=CVE-2020-9961
25 Sep 2020 — An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.7, Security Update 2020-005 High Sierra, Security Update 2020-005 Mojave. Processing a maliciously crafted image may lead to arbitrary code execution. Se abordó una lectura fuera de límites con una comprobación de entrada mejorada. Este problema se corrigió en macOS Catalina versión 10.15.7, Security Update 2020-005 High Sierra, Security Update 2020-005 Mojave. • http://seclists.org/fulldisclosure/2020/Nov/19 • CWE-125: Out-of-bounds Read •

CVE-2020-9941 – Apple Security Advisory 2020-11-13-3
https://notcve.org/view.php?id=CVE-2020-9941
25 Sep 2020 — This issue was addressed with improved checks. This issue is fixed in macOS Catalina 10.15.7, Security Update 2020-005 High Sierra, Security Update 2020-005 Mojave. A remote attacker may be able to unexpectedly alter application state. Este problema se abordó con comprobaciones mejoradas. Este problema se corrigió en macOS Catalina versión 10.15.7, Security Update 2020-005 High Sierra, Security Update 2020-005 Mojave. • http://seclists.org/fulldisclosure/2020/Dec/32 •

CVE-2020-6558 – Debian Security Advisory 4824-1
https://notcve.org/view.php?id=CVE-2020-6558
21 Sep 2020 — Insufficient policy enforcement in iOSWeb in Google Chrome on iOS prior to 85.0.4183.83 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. Una aplicación insuficiente de la política en iOSWeb en Google Chrome en iOS versiones anteriores a 85.0.4183.83, permitía a un atacante remoto omitir restricciones de navegación por medio de una página HTML diseñada Multiple security issues were discovered in the Chromium web browser, which could result in the execution of arbitrary cod... • http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00072.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVE-2020-9973 – Apple Security Advisory 2020-11-13-3
https://notcve.org/view.php?id=CVE-2020-9973
18 Sep 2020 — An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.7, Security Update 2020-005 High Sierra, Security Update 2020-005 Mojave, iOS 14.0 and iPadOS 14.0. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution. Se abordó una lectura fuera de límites con una comprobación de límites mejorada. Este problema se corrigió en macOS Catalina versión 10.15.7, Security Update 2020-005 High Sierra... • http://seclists.org/fulldisclosure/2020/Nov/20 • CWE-125: Out-of-bounds Read •

CVE-2020-9951 – webkitgtk: use-after-free may lead to arbitrary code execution
https://notcve.org/view.php?id=CVE-2020-9951
18 Sep 2020 — A use after free issue was addressed with improved memory management. This issue is fixed in Safari 14.0. Processing maliciously crafted web content may lead to arbitrary code execution. Se abordó un problema de uso de la memoria previamente liberada con una administración de la memoria mejorada. Este problema es corregido en Safari versión 14.0. • http://seclists.org/fulldisclosure/2020/Nov/18 • CWE-416: Use After Free •

CVE-2020-9959 – Apple Security Advisory 2020-11-13-3
https://notcve.org/view.php?id=CVE-2020-9959
18 Sep 2020 — A lock screen issue allowed access to messages on a locked device. This issue was addressed with improved state management. This issue is fixed in iOS 14.0 and iPadOS 14.0. A person with physical access to an iOS device may be able to view notification contents from the lockscreen. Un problema de la pantalla de bloqueo permitió el acceso a los mensajes en un dispositivo bloqueado. • http://seclists.org/fulldisclosure/2020/Nov/20 • CWE-667: Improper Locking •

CVE-2020-9964 – Apple Security Advisory 2020-11-13-3
https://notcve.org/view.php?id=CVE-2020-9964
18 Sep 2020 — A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 14.0 and iPadOS 14.0. A local user may be able to read kernel memory. Se abordó un problema de inicialización de la memoria con un manejo de la memoria mejorado. Este problema es corregido en iOS versión 14.0 e iPadOS versión 14.0. • http://seclists.org/fulldisclosure/2020/Nov/20 • CWE-665: Improper Initialization •

CVE-2020-9946 – Apple Security Advisory 2020-11-13-3
https://notcve.org/view.php?id=CVE-2020-9946
18 Sep 2020 — This issue was addressed with improved checks. This issue is fixed in iOS 14.0 and iPadOS 14.0, watchOS 7.0. The screen lock may not engage after the specified time period. Este problema es abordado con unas comprobaciones mejoradas. Este problema es corregido en iOS versión 14.0 e iPadOS versión 14.0, watchOS 7.0. • http://seclists.org/fulldisclosure/2020/Nov/20 • CWE-667: Improper Locking •

CVE-2020-9958 – Apple Security Advisory 2020-11-13-3
https://notcve.org/view.php?id=CVE-2020-9958
18 Sep 2020 — An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 14.0 and iPadOS 14.0. An application may be able to cause unexpected system termination or write kernel memory. Se abordó un problema de escritura fuera de límites con una comprobación de límites mejorada. Este problema es corregido en iOS versión 14.0 e iPadOS versión 14.0. • http://seclists.org/fulldisclosure/2020/Nov/20 • CWE-787: Out-of-bounds Write •