First published: Thu Nov 12 2020(Updated: )
A path handling issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.0.1. A remote attacker may be able to modify the file system.
Credit: an anonymous researcher product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS | <11.0.1 | 11.0.1 |
Apple macOS | <11.1 | 11.1 |
macOS Catalina | ||
macOS Mojave | ||
Apple iOS and macOS | >=10.14.0<10.14.6 | |
Apple iOS and macOS | >=10.15.0<10.15.7 | |
Apple iOS and macOS | =10.14.6 | |
Apple iOS and macOS | =10.14.6-security_update_2019-001 | |
Apple iOS and macOS | =10.14.6-security_update_2019-002 | |
Apple iOS and macOS | =10.14.6-security_update_2019-004 | |
Apple iOS and macOS | =10.14.6-security_update_2019-005 | |
Apple iOS and macOS | =10.14.6-security_update_2019-006 | |
Apple iOS and macOS | =10.14.6-security_update_2019-007 | |
Apple iOS and macOS | =10.14.6-security_update_2020-001 | |
Apple iOS and macOS | =10.14.6-security_update_2020-002 | |
Apple iOS and macOS | =10.14.6-security_update_2020-003 | |
Apple iOS and macOS | =10.14.6-security_update_2020-004 | |
Apple iOS and macOS | =10.14.6-security_update_2020-005 | |
Apple iOS and macOS | =10.14.6-security_update_2020-006 | |
Apple iOS and macOS | =10.15.7 | |
Apple iOS and macOS | =10.15.7-security_update_2020 | |
Apple iOS and macOS | >=11.0<11.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-27896 is a vulnerability in Ruby that involves a path handling issue that has been addressed with improved validation.
CVE-2020-27896 affects macOS Big Sur versions 11.0.1 and 11.1, as well as Apple Catalina and Apple Mojave.
To fix CVE-2020-27896, update your macOS Big Sur to version 11.0.1 or 11.1, if applicable, or keep your software up to date with the latest patches and updates provided by the vendor.
You can find more information about CVE-2020-27896 on the official Apple support pages: [Apple Support - HT212011](https://support.apple.com/en-us/HT212011) and [Apple Support - HT211931](https://support.apple.com/en-us/HT211931).