|
1471
|
7.8
9.3
|
HIGH
Local
|
This issue was addressed by encrypting communications over the network to devices running iOS 14, iPadOS 14, tvOS 14, and watchOS 7. This issue is fixed in iOS 14.0 and iPadOS 14.0, Xcode 12.0. An at…
|
NVD-CWE-noinfo
|
CVE-2020-9992
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1472
|
8.8
6.8
|
HIGH
Network
|
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in Safari 14.0. Processing maliciously crafted web content may lead to code execution.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-9983
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1473
|
5.5
4.3
|
MEDIUM
Local
|
A logic issue was addressed with improved state management. This issue is fixed in iOS 14.0 and iPadOS 14.0, tvOS 14.0, watchOS 7.0. A malicious application may be able to leak sensitive user informa…
|
NVD-CWE-noinfo
|
CVE-2020-9976
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1474
|
5.5
4.3
|
MEDIUM
Local
|
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 14.0 and iPadOS 14.0, macOS Catalina 10.15.7, tvOS 14.0, watchOS 7.0. A malicious application may be able to access …
|
NVD-CWE-noinfo
|
CVE-2020-9968
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1475
|
5.5
4.9
|
MEDIUM
Local
|
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 14.0 and iPadOS 14.0. A local user may be able to read kernel memory.
|
CWE-665
Improper Initialization
|
CVE-2020-9964
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1476
|
2.4
2.1
|
LOW
Physics
|
A lock screen issue allowed access to messages on a locked device. This issue was addressed with improved state management. This issue is fixed in iOS 14.0 and iPadOS 14.0. A person with physical acc…
|
CWE-667
Improper Locking
|
CVE-2020-9959
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1477
|
7.8
9.3
|
HIGH
Local
|
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 14.0 and iPadOS 14.0. An application may be able to cause unexpected system termination or write k…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-9958
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1478
|
7.1
5.8
|
HIGH
Network
|
An input validation issue was addressed with improved input validation. This issue is fixed in iOS 14.0 and iPadOS 14.0, tvOS 14.0, watchOS 7.0, Safari 14.0, iCloud for Windows 11.4, iCloud for Windo…
|
CWE-79
Cross-site Scripting
|
CVE-2020-9952
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1479
|
8.8
6.8
|
HIGH
Network
|
A use after free issue was addressed with improved memory management. This issue is fixed in Safari 14.0. Processing maliciously crafted web content may lead to arbitrary code execution.
|
CWE-416
Use After Free
|
CVE-2020-9951
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1480
|
6.8
4.6
|
MEDIUM
Physics
|
This issue was addressed with improved checks. This issue is fixed in iOS 14.0 and iPadOS 14.0, watchOS 7.0. The screen lock may not engage after the specified time period.
|
CWE-667
Improper Locking
|
CVE-2020-9946
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
14.0
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|