First published: Thu Nov 12 2020(Updated: )
A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1. An application may be able to execute arbitrary code with kernel privileges.
Credit: product-security@apple.com Zuozhi Fan @pattern_F_ Ant Group Tianqong Security LabZuozhi Fan @pattern_F_ Ant Group Tianqiong Security Lab
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS | <11.0.1 | 11.0.1 |
Apple macOS | <11.2 | 11.2 |
macOS Catalina | ||
macOS Mojave | ||
Apple iOS and macOS | <11.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-27904 is a vulnerability that existed in the kernel which resulted in memory corruption.
CVE-2020-27904 was addressed with improved state management.
macOS Big Sur versions up to and excluding 11.0.1 are affected by CVE-2020-27904.
No, macOS Catalina is not affected by CVE-2020-27904.
No, macOS Mojave is not affected by CVE-2020-27904.