|
1621
|
7.8
9.3
|
HIGH
Local
|
The issue was addressed with improved permissions logic. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. An application may be able to execute…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-3838
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3.1
|
2024-11-21 14:31
2020-02-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1622
|
5.5
2.1
|
MEDIUM
Local
|
An access issue was addressed with improved memory management. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. A malicious application may be …
|
NVD-CWE-noinfo
|
CVE-2020-3836
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3.1
|
2024-11-21 14:31
2020-02-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1623
|
7.0
7.6
|
HIGH
Local
|
A race condition was addressed with improved locking. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. An application may be able to execute arbitrary code with kernel privileges.
|
CWE-362
Race Condition
|
CVE-2020-3831
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3.1
|
2024-11-21 14:31
2020-02-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1624
|
7.8
9.3
|
HIGH
Local
|
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. An application may be able …
|
CWE-125
Out-of-bounds Read
|
CVE-2020-3829
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3.1
|
2024-11-21 14:31
2020-02-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1625
|
2.4
2.1
|
LOW
Physics
|
A lock screen issue allowed access to contacts on a locked device. This issue was addressed with improved state management. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. A person with physical…
|
NVD-CWE-noinfo
|
CVE-2020-3828
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3.1
|
2024-11-21 14:31
2020-02-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1626
|
7.8
6.8
|
HIGH
Local
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2, iTunes for Windows 12.10.4…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-3826
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3.1
|
2024-11-21 14:31
2020-02-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1627
|
8.8
6.8
|
HIGH
Network
|
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, tvOS 13.3.1, Safari 13.0.5, iTunes for Windows 12.10.4, iCloud for…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-3825
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3.1
|
2024-11-21 14:31
2020-02-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1628
|
7.8
9.3
|
HIGH
Local
|
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. An application may be a…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-3837
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.3.1
|
2025-02-28 23:44
2020-02-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1629
|
7.8
7.2
|
HIGH
Local
|
In Zsh before 5.8, attackers able to execute commands can regain privileges dropped by the --no-PRIVILEGED option. Zsh fails to overwrite the saved uid, so the original privileges can be restored by …
|
CWE-273
Improper Check for Dropped Privileges
|
CVE-2019-20044
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.5
|
2024-11-21 13:37
2020-02-24
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1630
|
3.1
2.9
|
LOW
Adjacent
|
An issue was discovered on Broadcom Wi-Fi client devices. Specifically timed and handcrafted traffic can cause internal errors (related to state transitions) in a WLAN device that lead to improper la…
|
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2019-15126
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.2
|
2024-11-21 13:28
2020-02-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|