CVE-2020-3831
https://notcve.org/view.php?id=CVE-2020-3831
A race condition was addressed with improved locking. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. An application may be able to execute arbitrary code with kernel privileges. Se abordó una condición de carrera con un bloqueo mejorado. Este problema es corregido en iOS versión 13.3.1 y iPadOS versión 13.3.1. • https://support.apple.com/HT210918 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •
CVE-2020-3828
https://notcve.org/view.php?id=CVE-2020-3828
A lock screen issue allowed access to contacts on a locked device. This issue was addressed with improved state management. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. A person with physical access to an iOS device may be able to access contacts from the lock screen. Un problema de la pantalla de bloqueo permitió el acceso a los contactos sobre un dispositivo bloqueado. • https://support.apple.com/HT210918 •
CVE-2020-3869
https://notcve.org/view.php?id=CVE-2020-3869
An issue existed in the handling of the local user's self-view. The issue was corrected with improved logic. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. A remote FaceTime user may be able to cause the local user's camera self-view to display the incorrect camera. Se presentó un problema en el manejo de la vista propia del usuario local. • https://support.apple.com/HT210918 •
CVE-2020-3858
https://notcve.org/view.php?id=CVE-2020-3858
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. An application may be able to execute arbitrary code with kernel privileges. Se abordó un problema de corrupción de memoria con un manejo de memoria mejorado. Este problema es corregido en iOS versión 13.3.1 y iPadOS versión 13.3.1. • https://support.apple.com/HT210918 • CWE-787: Out-of-bounds Write •
CVE-2020-3846
https://notcve.org/view.php?id=CVE-2020-3846
A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2, iTunes for Windows 12.10.4, iCloud for Windows 11.0, iCloud for Windows 7.17. Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution. Se abordó un desbordamiento del búfer con una comprobación de tamaño mejorado. Este problema es corregido en iOS versión 13.3.1 y iPadOS versión 13.3.1, macOS Catalina versión 10.15.3, tvOS versión 13.3.1, watchOS versión 6.1.2, iTunes para Windows versión 12.10.4, iCloud para Windows versión 11.0, iCloud para Windows versión 7.17. • https://support.apple.com/HT210947 https://support.apple.com/HT210948 • CWE-20: Improper Input Validation CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •