CVE-2020-9817 – Apple Security Advisory 2020-05-26-3
https://notcve.org/view.php?id=CVE-2020-9817
29 May 2020 — A permissions issue existed. This issue was addressed with improved permission validation. This issue is fixed in macOS Catalina 10.15.5. A malicious application may be able to gain root privileges. Se presentó un problema de permisos. • https://support.apple.com/HT211170 • CWE-276: Incorrect Default Permissions •
CVE-2020-9857 – Apple Security Advisory 2020-05-26-3
https://notcve.org/view.php?id=CVE-2020-9857
29 May 2020 — An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.5, Security Update 2020-003 Mojave, Security Update 2020-003 High Sierra. A malicious website may be able to exfiltrate autofilled data in Safari. Se presentó un problema en el análisis de URL. • https://support.apple.com/en-us/HT211170 •
CVE-2020-9842 – Apple Security Advisory 2020-05-26-3
https://notcve.org/view.php?id=CVE-2020-9842
29 May 2020 — An entitlement parsing issue was addressed with improved parsing. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. A malicious application could interact with system processes to access private information and perform privileged actions. Se abordó la cuestión del análisis de los derechos con un análisis mejorado. Este problema está corregido en iOS versión 13.5 y iPadOS versión 13.5, macOS Catalina versión 10.15.5, tvOS versión 13.4.5, watchOS versión 6.2.... • https://support.apple.com/HT211168 •
CVE-2020-3882 – Apple Security Advisory 2020-05-26-3
https://notcve.org/view.php?id=CVE-2020-3882
29 May 2020 — This issue was addressed with improved checks. This issue is fixed in macOS Catalina 10.15.5. Importing a maliciously crafted calendar invitation may exfiltrate user information. Este problema se abordó con comprobaciones mejoradas. Este problema es corregido en macOS Catalina versión 10.15.5. • https://support.apple.com/HT211170 •
CVE-2020-9797 – Apple Security Advisory 2020-05-26-3
https://notcve.org/view.php?id=CVE-2020-9797
29 May 2020 — An information disclosure issue was addressed by removing the vulnerable code. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. A malicious application may be able to determine another application's memory layout. Se abordó un problema de divulgación de información mediante la eliminación del código vulnerable. Este problema es corregido en iOS versión 13.5 y iPadOS versión 13.5, macOS Catalina versión 10.15.5, tvOS versión 13.4.5, watchOS versión 6.2.5. • https://support.apple.com/HT211168 •
CVE-2020-9808 – Apple Security Advisory 2020-05-26-3
https://notcve.org/view.php?id=CVE-2020-9808
29 May 2020 — A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. An application may be able to cause unexpected system termination or write kernel memory. Se abordó un problema de corrupción de la memoria con una administración de estado mejorada. Este problema es corregido en iOS versión 13.5 y iPadOS versión 13.5, macOS Catalina versión 10.15.5, tvOS versión 13.4.5, watchOS versión 6.2.5. • https://support.apple.com/HT211168 • CWE-787: Out-of-bounds Write •
CVE-2020-9832 – Apple Security Advisory 2020-05-26-3
https://notcve.org/view.php?id=CVE-2020-9832
29 May 2020 — An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.5. A malicious application may be able to determine kernel memory layout. Se abordó una lectura fuera de límites con una comprobación de entrada mejorada. Este problema es corregido en macOS Catalina versión 10.15.5. • https://support.apple.com/HT211170 • CWE-125: Out-of-bounds Read •
CVE-2020-9837 – Apple Security Advisory 2020-05-26-3
https://notcve.org/view.php?id=CVE-2020-9837
29 May 2020 — An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5. A remote attacker may be able to leak memory. Se abordó una lectura fuera de límites con una comprobación de límites mejorada. Este problema es corregido en iOS versión 13.5 y iPadOS versión 13.5, macOS Catalina versión 10.15.5, tvOS versión 13.4.5. • https://support.apple.com/HT211168 • CWE-125: Out-of-bounds Read •
CVE-2020-9809 – Apple Security Advisory 2020-05-26-3
https://notcve.org/view.php?id=CVE-2020-9809
29 May 2020 — An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. A malicious application may be able to determine kernel memory layout. Se abordó un problema de divulgación de información con una administración de estado mejorada. Este problema es corregido en iOS versión 13.5 y iPadOS versión 13.5, macOS Catalina versión 10.15.5, tvOS versión 13.4.5, watchOS versión 6.2.5. • https://support.apple.com/HT211168 •
CVE-2020-9834 – Apple Security Advisory 2020-05-26-3
https://notcve.org/view.php?id=CVE-2020-9834
29 May 2020 — A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.5. An application may be able to execute arbitrary code with kernel privileges. Se abordó un problema de corrupción de la memoria con una comprobación de entrada mejorada. Este problema es corregido en macOS Catalina versión 10.15.5. • https://support.apple.com/HT211170 • CWE-787: Out-of-bounds Write •