First published: Thu Nov 05 2020(Updated: )
Audio. An out-of-bounds write was addressed with improved input validation.
Credit: JunDong Xie Ant Security LightJunDong Xie Ant Security LightJunDong Xie Ant Security LightJunDong Xie Ant Security LightJunDong Xie product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPadOS | <14.2 | |
Apple iPhone OS | <14.2 | |
Apple macOS | >=11.0<11.0.1 | |
Apple tvOS | <14.2 | |
Apple watchOS | <7.1 | |
Apple tvOS | <14.2 | 14.2 |
Apple watchOS | <7.1 | 7.1 |
Apple iOS | <14.2 | 14.2 |
Apple iPadOS | <14.2 | 14.2 |
Apple macOS Big Sur | <11.0.1 | 11.0.1 |
Apple macOS Big Sur | <11.1 | 11.1 |
Apple Catalina | ||
Apple Mojave |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-27916 is an audio vulnerability in Apple iOS, iPadOS, tvOS, macOS Big Sur, watchOS, Catalina, and Mojave.
CVE-2020-27916 can allow an attacker to perform an out-of-bounds write, which may lead to arbitrary code execution or system crashes on affected Apple devices.
CVE-2020-27916 affects Apple devices running iOS, iPadOS, tvOS, macOS Big Sur, watchOS, Catalina, and Mojave. Please refer to Apple's security advisory for the specific affected versions.
To mitigate the risk of CVE-2020-27916, it is recommended to update your Apple devices to the latest available version as mentioned in Apple's security advisory.
You can find more information about CVE-2020-27916 in the following references: [Apple Support - CVE-2020-27916](https://support.apple.com/en-us/HT211929), [Apple Support - CVE-2020-27916](https://support.apple.com/en-us/HT211930), [Apple Support - CVE-2020-27916](https://support.apple.com/en-us/HT212011).