CVE-2020-27936Out-of-bounds Read in Apple Macos

CWE-125Out-of-bounds Read3 documents3 sources
Severity
7.1HIGHNVD
EPSS
0.0%
top 88.19%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 2
Latest updateMay 24

Description

An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave. A local user may be able to cause unexpected system termination or read kernel memory.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:HExploitability: 1.8 | Impact: 5.2

Affected Packages2 packages

CVEListV5apple/macosunspecified11.1
NVDapple/mac_os_x< 11.1.0

🔴Vulnerability Details

2
GHSA
GHSA-gp5c-2w7m-hx2p: An out-of-bounds read issue existed that led to the disclosure of kernel memory2022-05-24
CVEList
CVE-2020-27936: An out-of-bounds read issue existed that led to the disclosure of kernel memory2021-04-02
CVE-2020-27936 — Out-of-bounds Read in Apple Macos | cvebase