First published: Thu Nov 12 2020(Updated: )
An issue existed in the handling of snapshots. The issue was resolved with improved permissions logic. This issue is fixed in macOS Big Sur 11.0.1. A malicious application may be able to preview files it does not have access to.
Credit: product-security@apple.com Thijs Alkemade Computest Research Division
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS | <11.0.1 | 11.0.1 |
Apple iOS and macOS | <11.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-27900 is a vulnerability found in NSRemoteView that existed in the handling of snapshots.
CVE-2020-27900 affects macOS Big Sur (version up to exclusive 11.0.1).
CVE-2020-27900 was resolved with improved permissions logic.
The severity of CVE-2020-27900 is not specified in the provided information.
You can find more information about CVE-2020-27900 in the reference provided by Apple: https://support.apple.com/en-us/HT211931