Lucene search

K
cvelistAppleCVELIST:CVE-2020-9934
HistoryOct 16, 2020 - 4:51 p.m.

CVE-2020-9934

2020-10-1616:51:05
apple
www.cve.org
7
environment variables
validation
sensitive information
ios 13.6
ipados 13.6
macos catalina 10.15.6

AI Score

5.2

Confidence

High

EPSS

0.001

Percentile

44.0%

An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6. A local user may be able to view sensitive user information.

CNA Affected

[
  {
    "product": "iOS",
    "vendor": "Apple",
    "versions": [
      {
        "lessThan": "iOS 13.6 and iPadOS 13.6",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  },
  {
    "product": "macOS",
    "vendor": "Apple",
    "versions": [
      {
        "lessThan": "macOS Catalina 10.15.6",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]

AI Score

5.2

Confidence

High

EPSS

0.001

Percentile

44.0%