CVE-2020-7463
published 2021-03-26CVE-2020-7463: In FreeBSD 12.1-STABLE before r364644, 11.4-STABLE before r364651, 12.1-RELEASE before p9, 11.4-RELEASE before p3, and 11.3-RELEASE before p13, improper…
PriorityP422medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.40%
32.2th percentile
In FreeBSD 12.1-STABLE before r364644, 11.4-STABLE before r364651, 12.1-RELEASE before p9, 11.4-RELEASE before p3, and 11.3-RELEASE before p13, improper handling in the kernel causes a use-after-free bug by sending large user messages from multiple threads on the same SCTP socket. The use-after-free situation may result in unintended kernel behaviour including a kernel panic.
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | icloud | < 12.3 | 12.3 |
| apple | ios_14.5_and_ipados | — | — |
| apple | ipados | < 14.5 | 14.5 |
| apple | iphone_os | < 14.5 | 14.5 |
| apple | itunes | < 12.11.3 | 12.11.3 |
| apple | macos | >= 11.0 < 11.3 | 11.3 |
| apple | macos_big_sur | — | — |
| apple | safari | < 14.1 | 14.1 |
| apple | tvos | < 14.5 | 14.5 |
| apple | watchos | < 7.4 | 7.4 |
| freebsd | freebsd | — | — |
| freebsd | freebsd | — | — |
| freebsd | freebsd | — | — |
| freebsd | freebsd | — | — |
| freebsd | freebsd | — | — |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:N/I:N/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2020-7463: iOS 14.5 and iPadOS 14.5
vendor_apple·2021-04-26·CVSS 5.5
CVE-2020-7463 [MEDIUM] CVE-2020-7463: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2020-7463
Component: WebRTC
Impact: A remote attacker may be able to cause unexpected system termination or corrupt kernel memory
Description: A use after free issue was addressed with improved memory management.
Apple
CVE-2020-7463: macOS Big Sur 11.3
vendor_apple·2021-04-26·CVSS 5.5
CVE-2020-7463 [MEDIUM] CVE-2020-7463: macOS Big Sur 11.3
Apple Security Update: About the security content of macOS Big Sur 11.3
Product: macOS Big Sur
Version: 11.3
CVE: CVE-2020-7463
Component: WebRTC
Impact: A remote attacker may be able to cause unexpected system termination or corrupt kernel memory
Description: A use after free issue was addressed with improved memory management.
BSD
FreeBSD-SA-20:25.sctp: SCTP socket use-after-free bug
bsd_advisories·2020-09-02·CVSS 5.5
CVE-2020-7463 [MEDIUM] FreeBSD-SA-20:25.sctp: SCTP socket use-after-free bug
FreeBSD-SA-20:25.sctp Security Advisory
The FreeBSD Project
Topic: SCTP socket use-after-free bug
Category: core
Module: kernel
Announced: 2020-09-02
Credits: [email protected]
Affects: All supported versions of FreeBSD.
Corrected: 2020-08-24 09:19:05 UTC (stable/12, 12.1-STABLE)
2020-09-02 16:24:32 UTC (releng/12.1, 12.1-RELEASE-p9)
2020-08-24 09:46:36 UTC (stable/11, 11.4-STABLE)
2020-09-02 16:24:32 UTC (releng/11.4, 11.4-RELEASE-p3)
2020-09-02 16:24:32 UTC (releng/11.3, 11.3-RELEASE-p13)
CVE Name: CVE-2020-7463
For general information regarding FreeBSD Security Advisories,
including descriptions of the fields above, security branches, and the
following sections, please visit .
I. Background
The Stream Control Transmission Protocol (SCTP) is a message oriented
transport pr
GHSA
GHSA-j8c4-54pw-h2vw: In FreeBSD 12
ghsa_unreviewed·2022-05-24
CVE-2020-7463 [MEDIUM] CWE-416 GHSA-j8c4-54pw-h2vw: In FreeBSD 12
In FreeBSD 12.1-STABLE before r364644, 11.4-STABLE before r364651, 12.1-RELEASE before p9, 11.4-RELEASE before p3, and 11.3-RELEASE before p13, improper handling in the kernel causes a use-after-free bug by sending large user messages from multiple threads on the same SCTP socket. The use-after-free situation may result in unintended kernel behaviour including a kernel panic.
No detection rules found.
No public exploits indexed.
Qualys
iOS / iPadOS 14.5 Updates: Identify Assets Requiring Update and Take Remote Action with VMDR for Mobile Devices | Qualys
blogs_qualys·2021-04-28·CVSS 5.5
[MEDIUM] iOS / iPadOS 14.5 Updates: Identify Assets Requiring Update and Take Remote Action with VMDR for Mobile Devices | Qualys
Apple recently released iOS 14.5 and iPadOS 14.5 which include a security update that addresses almost 50 vulnerabilities including several critical RCE and privilege escalation vulnerabilities. Qualys recommends security teams to immediately update all devices running iOS and iPadOS to the latest version.
The vulnerabilities affect iOS and iPadOS components including Accessibility, CFNetwork, CoreFoundation, FaceTime, Safari, ImageIO, Kernel, Preferences, Safari, WebKit, and others. As part of the releases, Apple has also made major enhancements related to zero-click (or 0-click) exploit protection that make it more difficult for hackers to take control of an iPhone. Zero-click exploits allow a hacker to take over an iPhone with no interaction from the target, as evidenced by this zero-c
Qualys
iOS / iPadOS 14.5 Updates: Identify Assets Requiring Update and Take Remote Action with VMDR for Mobile Devices
blogs_qualys·2021-04-28·CVSS 5.5
[MEDIUM] iOS / iPadOS 14.5 Updates: Identify Assets Requiring Update and Take Remote Action with VMDR for Mobile Devices
Apple recently released iOS 14.5 and iPadOS 14.5 which include a security update that addresses almost 50 vulnerabilities including several critical RCE and privilege escalation vulnerabilities. Qualys recommends security teams to immediately update all devices running iOS and iPadOS to the latest version.
The vulnerabilities affect iOS and iPadOS components including Accessibility, CFNetwork, CoreFoundation, FaceTime, Safari, ImageIO, Kernel, Preferences, Safari, WebKit, and others. As part of the releases, Apple has also made major enhancements related to zero-click (or 0-click) exploit protection that make it more difficult for hackers to take control of an iPhone. Zero-click exploits allow a hacker to take over an iPhone with no interaction from the target, as evidenced by this zero-c
http://seclists.org/fulldisclosure/2021/Apr/49http://seclists.org/fulldisclosure/2021/Apr/50http://seclists.org/fulldisclosure/2021/Apr/57http://seclists.org/fulldisclosure/2021/Apr/58http://seclists.org/fulldisclosure/2021/Apr/59https://security.FreeBSD.org/advisories/FreeBSD-SA-20:25.sctp.aschttps://support.apple.com/kb/HT212317https://support.apple.com/kb/HT212318https://support.apple.com/kb/HT212319https://support.apple.com/kb/HT212321https://support.apple.com/kb/HT212323https://support.apple.com/kb/HT212324https://support.apple.com/kb/HT212325http://seclists.org/fulldisclosure/2021/Apr/49http://seclists.org/fulldisclosure/2021/Apr/50http://seclists.org/fulldisclosure/2021/Apr/57http://seclists.org/fulldisclosure/2021/Apr/58http://seclists.org/fulldisclosure/2021/Apr/59https://security.FreeBSD.org/advisories/FreeBSD-SA-20:25.sctp.aschttps://support.apple.com/kb/HT212317https://support.apple.com/kb/HT212318https://support.apple.com/kb/HT212319https://support.apple.com/kb/HT212321https://support.apple.com/kb/HT212323https://support.apple.com/kb/HT212324https://support.apple.com/kb/HT212325
2021-03-26
Published