Lucene search

K
cvelistAppleCVELIST:CVE-2020-29610
HistoryApr 02, 2021 - 5:40 p.m.

CVE-2020-29610

2021-04-0217:40:24
apple
www.cve.org
8
out-of-bounds read
input validation
apple operating systems
watchos
macos big sur
security update
ios
ipados
tvos
audio file
memory disclosure

AI Score

5.7

Confidence

High

EPSS

0.001

Percentile

44.1%

An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 7.2, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, iOS 14.3 and iPadOS 14.3, tvOS 14.3. Processing a maliciously crafted audio file may disclose restricted memory.

CNA Affected

[
  {
    "product": "iOS and iPadOS",
    "vendor": "Apple",
    "versions": [
      {
        "lessThan": "14.3",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  },
  {
    "product": "tvOS",
    "vendor": "Apple",
    "versions": [
      {
        "lessThan": "14.3",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  },
  {
    "product": "watchOS",
    "vendor": "Apple",
    "versions": [
      {
        "lessThan": "7.2",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  },
  {
    "product": "macOS",
    "vendor": "Apple",
    "versions": [
      {
        "lessThan": "11.1",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]

AI Score

5.7

Confidence

High

EPSS

0.001

Percentile

44.1%

Related for CVELIST:CVE-2020-29610