CVE-2020-3896Apple Macos vulnerability

3 documents3 sources
Severity
5.5MEDIUMNVD
EPSS
0.2%
top 52.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 23
Latest updateDec 24

Description

This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Catalina 10.15.4, Security Update 2020-002 Mojave, Security Update 2020-002 High Sierra. A malicious application may be able to overwrite arbitrary files.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

CVEListV5apple/macosunspecified10.15
NVDapple/mac_os_x10.1310.13.6+4

🔴Vulnerability Details

2
GHSA
GHSA-rgrg-p9fr-gcr5: This issue was addressed by removing the vulnerable code2021-12-24
CVEList
CVE-2020-3896: This issue was addressed by removing the vulnerable code2021-12-23
CVE-2020-3896 — Apple Macos vulnerability | cvebase