First published: Thu Nov 05 2020(Updated: )
Logging. A path handling issue was addressed with improved validation.
Credit: Tommy Muir @Muirey03 Tommy Muir @Muirey03 Tommy Muir @Muirey03 Tommy Muir @Muirey03 Tommy Muir @Muirey03 product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS | <11.0.1 | 11.0.1 |
tvOS | <14.2 | 14.2 |
Apple macOS | <11.1 | 11.1 |
macOS Catalina | ||
macOS Mojave | ||
Apple iOS, iPadOS, and watchOS | <14.2 | 14.2 |
Apple iOS, iPadOS, and watchOS | <14.2 | 14.2 |
Apple iOS, iPadOS, and watchOS | <7.1 | 7.1 |
Apple iOS, iPadOS, and watchOS | <14.2 | |
iOS | <14.2 | |
Apple iOS and macOS | <11.0.1 | |
Apple iOS and macOS | >=10.14<10.14.6 | |
Apple iOS and macOS | >=10.15<10.15.7 | |
Apple iOS and macOS | =10.14.6 | |
Apple iOS and macOS | =10.14.6-security_update_2019-001 | |
Apple iOS and macOS | =10.14.6-security_update_2019-002 | |
Apple iOS and macOS | =10.14.6-security_update_2019-004 | |
Apple iOS and macOS | =10.14.6-security_update_2019-005 | |
Apple iOS and macOS | =10.14.6-security_update_2019-006 | |
Apple iOS and macOS | =10.14.6-security_update_2019-007 | |
Apple iOS and macOS | =10.14.6-security_update_2020-001 | |
Apple iOS and macOS | =10.14.6-security_update_2020-002 | |
Apple iOS and macOS | =10.14.6-security_update_2020-003 | |
Apple iOS and macOS | =10.14.6-security_update_2020-004 | |
Apple iOS and macOS | =10.14.6-security_update_2020-005 | |
Apple iOS and macOS | =10.14.6-security_update_2020-006 | |
Apple iOS and macOS | =10.15.7 | |
Apple iOS and macOS | =10.15.7-security_update_2020 | |
tvOS | <14.2 | |
Apple iOS, iPadOS, and watchOS | <7.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-10010 is a vulnerability in Apple iOS, iPadOS, tvOS, macOS Big Sur, watchOS, Catalina, and Mojave that was addressed with improved validation for a path handling issue in the logging system.
Apple iOS, iPadOS, tvOS, macOS Big Sur, watchOS, Catalina, and Mojave versions up to but not including 14.2, 11.0.1, 7.1, 11.1 respectively are affected by CVE-2020-10010.
To fix CVE-2020-10010, update your Apple devices to iOS, iPadOS, tvOS, macOS Big Sur, watchOS, Catalina, and Mojave versions 14.2, 11.0.1, 7.1, 11.1 respectively, or later.
You can find more information about CVE-2020-10010 on Apple's official security advisory pages: [link1](https://support.apple.com/en-us/HT211929), [link2](https://support.apple.com/en-us/HT211930), [link3](https://support.apple.com/en-us/HT212011).