CVE-2020-27924
https://notcve.org/view.php?id=CVE-2020-27924
02 Apr 2021 — An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, watchOS 7.1, tvOS 14.2. Processing a maliciously crafted image may lead to arbitrary code execution. Se abordó una lectura fuera de límites con una comprobación de la entrada mejorada. Este problema es corregido en macOS Big Sur versión 11.1, Security Update 2020-001 Catalina, Se... • https://support.apple.com/en-us/HT211928 • CWE-125: Out-of-bounds Read •
CVE-2020-27935
https://notcve.org/view.php?id=CVE-2020-27935
02 Apr 2021 — Multiple issues were addressed with improved logic. This issue is fixed in iOS 14.2 and iPadOS 14.2, macOS Big Sur 11.0.1, watchOS 7.1, tvOS 14.2. A sandboxed process may be able to circumvent sandbox restrictions. Se abordaron múltiples problemas con una lógica mejorada. Este problema es corregido en iOS versión 14.2 y iPadOS versión 14.2, macOS Big Sur versión 11.0.1, watchOS versión 7.1, tvOS versión 14.2. • https://github.com/LIJI32/SnatchBox •
CVE-2020-27920
https://notcve.org/view.php?id=CVE-2020-27920
02 Apr 2021 — A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, watchOS 7.1, tvOS 14.2. Processing maliciously crafted web content may lead to code execution. Se abordó un problema de uso de la memoria previamente liberada con una administración de la memoria mejorada. Este problema es corregido en macOS Big Sur versión 11.1, Security Updat... • https://support.apple.com/en-us/HT211928 • CWE-416: Use After Free •
CVE-2020-27899
https://notcve.org/view.php?id=CVE-2020-27899
02 Apr 2021 — A use after free issue was addressed with improved memory management. This issue is fixed in iOS 14.2 and iPadOS 14.2, macOS Big Sur 11.0.1, watchOS 7.1, tvOS 14.2. A local attacker may be able to elevate their privileges. Se abordó un problema de uso de la memoria previamente liberada con una administración de la memoria mejorada. Este problema es corregido en iOS versión 14.2 y iPadOS versión 14.2, macOS Big Sur versión 11.0.1, watchOS versión 7.1, tvOS versión 14.2. • https://support.apple.com/en-us/HT211928 • CWE-416: Use After Free •
CVE-2020-9975
https://notcve.org/view.php?id=CVE-2020-9975
02 Apr 2021 — A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14.0, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, watchOS 7.0, iOS 14.0 and iPadOS 14.0. An application may be able to execute arbitrary code with kernel privileges. Se abordó un problema de uso de la memoria previamente liberada con una administración de la memoria mejorada. Este problema es corregido en macOS Big Sur versión 11.0.1, tvOS v... • https://support.apple.com/en-us/HT211843 • CWE-416: Use After Free •
CVE-2020-9978
https://notcve.org/view.php?id=CVE-2020-9978
02 Apr 2021 — This issue was addressed with improved setting propagation. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14.0, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, watchOS 7.0, iOS 14.0 and iPadOS 14.0. An attacker in a privileged network position may be able to unexpectedly alter application state. Este problema es abordado con una propagación de configuración mejorada. Este problema es corregido en macOS Big Sur versión 11.0.1, tvOS versión 14.0, macOS Big Sur ... • https://support.apple.com/en-us/HT211843 •
CVE-2020-9926
https://notcve.org/view.php?id=CVE-2020-9926
02 Apr 2021 — A use after free issue was addressed with improved memory management. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, iCloud for Windows 7.20, macOS Catalina 10.15.6, Security Update 2020-004 Mojave, Security Update 2020-004 High Sierra. Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution. Se abordó un problema de uso de la memoria previamente liberada con la mejora la administración de la memoria. Este problema e... • https://support.apple.com/en-us/HT211288 • CWE-416: Use After Free •
CVE-2020-9971
https://notcve.org/view.php?id=CVE-2020-9971
02 Apr 2021 — A logic issue was addressed with improved validation. This issue is fixed in watchOS 7.0, tvOS 14.0, iOS 14.0 and iPadOS 14.0, macOS Big Sur 11.0.1. A malicious application may be able to elevate privileges. Se abordó un problema de lógica con una comprobación mejorada. Este problema es corregido en watchOS versión 7.0, tvOS versión 14.0, iOS versión 14.0 y iPadOS versión 14.0, macOS Big Sur versión 11.0.1. • https://support.apple.com/en-us/HT211843 •
CVE-2020-9967 – XNU Network Stack Kernel Heap Overflow
https://notcve.org/view.php?id=CVE-2020-9967
02 Apr 2021 — Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14.0, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, watchOS 7.0, iOS 14.0 and iPadOS 14.0. A remote attacker may be able to cause unexpected system termination or corrupt kernel memory. Se abordaron múltiples problemas de corrupción de la memoria con una comprobación de la entrada mejorada. Este problema es corregido en macOS Big Su... • http://packetstormsecurity.com/files/163501/XNU-Network-Stack-Kernel-Heap-Overflow.html • CWE-787: Out-of-bounds Write •
CVE-2020-9962
https://notcve.org/view.php?id=CVE-2020-9962
02 Apr 2021 — A buffer overflow was addressed with improved size validation. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14.0, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, watchOS 7.0, iOS 14.0 and iPadOS 14.0. Processing a maliciously crafted image may lead to arbitrary code execution. Se abordó un desbordamiento del búfer con una comprobación mejorada del tamaño. Este problema es corregido en macOS Big Sur versión 11.0.1, tvOS versión 14.0, macOS Big Sur versión 11.... • https://support.apple.com/en-us/HT211843 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •