CVE-2020-9865 – Apple Security Advisory 2020-07-15-1
https://notcve.org/view.php?id=CVE-2020-9865
17 Jul 2020 — A memory corruption issue was addressed by removing the vulnerable code. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. A malicious application may be able to break out of its sandbox. Se abordó un problema de corrupción de la memoria al eliminar el código vulnerable. Este problema es corregido en iOS versión 13.6 y iPadOS versión 13.6, macOS Catalina versión 10.15.6, tvOS versión 13.4.8, watchOS versión 6.2.8. • https://support.apple.com/HT211288 • CWE-787: Out-of-bounds Write •
CVE-2020-9878 – Apple Security Advisory 2020-07-15-1
https://notcve.org/view.php?id=CVE-2020-9878
17 Jul 2020 — A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution. Se abordó un problema de desbordamiento del búfer con un manejo de la memoria mejorado. Este problema es corregido en iOS versión 13.6 y iPadOS versión 13.6, macOS Catalina versión 10.15.6, tvOS versión 13.4.8, watchOS ... • https://support.apple.com/HT211288 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2020-9864 – Apple Security Advisory 2020-07-15-2
https://notcve.org/view.php?id=CVE-2020-9864
17 Jul 2020 — A logic issue was addressed with improved restrictions. This issue is fixed in macOS Catalina 10.15.6. An application may be able to execute arbitrary code with kernel privileges. Se abordó un problema lógico con una restricciones mejoradas. Este problema es corregido en macOS Catalina versión 10.15.6. • https://support.apple.com/HT211289 •
CVE-2020-9885 – Apple Security Advisory 2020-07-15-1
https://notcve.org/view.php?id=CVE-2020-9885
17 Jul 2020 — An issue existed in the handling of iMessage tapbacks. The issue was resolved with additional verification. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. A user that is removed from an iMessage group could rejoin the group. Se presentó un problema en el manejo de tapbacks de iMessage. • https://support.apple.com/HT211288 • CWE-345: Insufficient Verification of Data Authenticity •
CVE-2020-9866 – Apple Security Advisory 2020-07-15-2
https://notcve.org/view.php?id=CVE-2020-9866
17 Jul 2020 — A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.6, Security Update 2020-004 Mojave, Security Update 2020-004 High Sierra. A buffer overflow may result in arbitrary code execution. Se abordó un desbordamiento de búfer con una comprobación de límites mejorada. Este problema se corrigió en macOS Catalina versión 10.15.6, Security Update 2020-004 Mojave, Security Update 2020-004 High Sierra. • https://support.apple.com/en-us/HT211289 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2020-9859 – Apple Multiple Products Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2020-9859
02 Jun 2020 — A memory consumption issue was addressed with improved memory handling. This issue is fixed in iOS 13.5.1 and iPadOS 13.5.1, macOS Catalina 10.15.5 Supplemental Update, tvOS 13.4.6, watchOS 6.2.6. An application may be able to execute arbitrary code with kernel privileges. Se abordó un problema de consumo de memoria con un manejo de memoria mejorado. Este problema esta corregido en iOS versión 13.5.1 y iPadOS versión 13.5.1, Supplemental Update de macOS Catalina versión 10.15.5, tvOS versión 13.4.6, watchOS... • https://support.apple.com/HT211214 • CWE-415: Double Free •
CVE-2020-9811 – Apple Security Advisory 2020-05-26-3
https://notcve.org/view.php?id=CVE-2020-9811
29 May 2020 — An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. A local user may be able to read kernel memory. Se abordó un problema de divulgación de información con una administración de estado mejorada. Este problema es corregido en iOS versión 13.5 y iPadOS versión 13.5, macOS Catalina versión 10.15.5, tvOS versión 13.4.5, watchOS versión 6.2.5. • https://support.apple.com/HT211168 •
CVE-2020-9824 – Apple Security Advisory 2020-05-26-3
https://notcve.org/view.php?id=CVE-2020-9824
29 May 2020 — A logic issue was addressed with improved restrictions. This issue is fixed in macOS Catalina 10.15.5. A non-privileged user may be able to modify restricted network settings. Se abordó un problema lógico con restricciones mejoradas. Este problema es corregido en macOS Catalina versión 10.15.5. • https://support.apple.com/HT211170 •
CVE-2020-9790 – Apple Security Advisory 2020-05-26-10
https://notcve.org/view.php?id=CVE-2020-9790
29 May 2020 — An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5, iTunes 12.10.7 for Windows, iCloud for Windows 11.2, iCloud for Windows 7.19. Processing a maliciously crafted image may lead to arbitrary code execution. Se abordó un problema de escritura fuera de límites con una comprobación de límites mejorada. Este problema es corregido en iOS versión 13.5 y iPadOS versión 13.5, macOS Catalina ver... • https://support.apple.com/HT211168 • CWE-787: Out-of-bounds Write •
CVE-2020-9857 – Apple Security Advisory 2020-05-26-3
https://notcve.org/view.php?id=CVE-2020-9857
29 May 2020 — An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.5, Security Update 2020-003 Mojave, Security Update 2020-003 High Sierra. A malicious website may be able to exfiltrate autofilled data in Safari. Se presentó un problema en el análisis de URL. • https://support.apple.com/en-us/HT211170 •