|
1321
|
7.8
9.3
|
HIGH
Local
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. Processing a maliciously crafted aud…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27910
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.2
|
2024-11-21 14:22
2020-12-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1322
|
7.8
9.3
|
HIGH
Local
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. Processing a maliciously crafted audio file may lead to ar…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27909
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.2
|
2024-11-21 14:22
2020-12-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1323
|
7.8
9.3
|
HIGH
Local
|
A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. A malicious application may be able to execute arbitra…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-27905
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.2
|
2024-11-21 14:22
2020-12-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1324
|
4.6
2.1
|
MEDIUM
Physics
|
An authentication issue was addressed with improved state management. This issue is fixed in iOS 14.2 and iPadOS 14.2. A person with physical access to an iOS device may be able to access stored pass…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2020-27902
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.2
|
2024-11-21 14:22
2020-12-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1325
|
7.8
6.8
|
HIGH
Local
|
An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. Processing a maliciously crafted au…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-10017
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.2
|
2024-11-21 13:54
2020-12-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1326
|
5.5
7.1
|
MEDIUM
Local
|
A memory initialization issue was addressed. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 12.4.9, watchOS 6.2.9, Security Update 2020-006 High Sierra, Security Update 2020-006 Mojave…
|
CWE-665
Improper Initialization
|
CVE-2020-27950
|
cpe:2.3:o:apple:iphone_os:*:*
|
14.0
|
|
|
12.4.9 14.2
|
2025-02-28 23:44
2020-12-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1327
|
7.8
6.8
|
HIGH
Local
|
A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1, iTunes for Windows 12.10.9. Processing a maliciously crafted text file may lead to…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-9999
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-12-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1328
|
7.8
6.8
|
HIGH
Local
|
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.0 and iPadOS 14.0. A malicious application may be able to elevate privileges.
|
CWE-416
Use After Free
|
CVE-2020-9996
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-12-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1329
|
4.3
4.3
|
MEDIUM
Network
|
The issue was addressed with improved UI handling. This issue is fixed in watchOS 7.0, Safari 14.0, iOS 14.0 and iPadOS 14.0. Visiting a malicious website may lead to address bar spoofing.
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2020-9993
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-12-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1330
|
5.5
2.1
|
MEDIUM
Local
|
The issue was addressed with improved deletion. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.0, iOS 14.0 and iPadOS 14.0. A local user may be able to discover a user’s deleted messages.
|
NVD-CWE-noinfo
|
CVE-2020-9989
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-12-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|