Lucene search

K
cvelistAppleCVELIST:CVE-2020-9985
HistoryOct 22, 2020 - 6:07 p.m.

CVE-2020-9985

2020-10-2218:07:03
apple
www.cve.org
6
buffer overflow
memory handling
ios 13.6
ipados 13.6
macos catalina 10.15.6
watchos 6.2.8
maliciously crafted usd file
application termination
arbitrary code execution

AI Score

8.4

Confidence

High

EPSS

0.002

Percentile

61.5%

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, watchOS 6.2.8. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.

CNA Affected

[
  {
    "product": "iOS",
    "vendor": "Apple",
    "versions": [
      {
        "lessThan": "iOS 13.6 and iPadOS 13.6",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  },
  {
    "product": "macOS",
    "vendor": "Apple",
    "versions": [
      {
        "lessThan": "macOS Catalina 10.15.6",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  },
  {
    "product": "watchOS",
    "vendor": "Apple",
    "versions": [
      {
        "lessThan": "watchOS 6.2.8",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]

AI Score

8.4

Confidence

High

EPSS

0.002

Percentile

61.5%

Related for CVELIST:CVE-2020-9985