First published: Mon Dec 14 2020(Updated: )
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave. Processing a maliciously crafted image may lead to arbitrary code execution.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS | <11.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-27939 is a vulnerability in ImageIO that was addressed with improved checks.
macOS Big Sur versions up to and including 11.1, Catalina, and Mojave are affected by CVE-2020-27939.
CVE-2020-27939 was addressed by implementing improved checks in ImageIO.
To fix CVE-2020-27939, update your macOS Big Sur to version 11.1 or later, or apply the relevant security updates provided by Apple for Catalina or Mojave.
You can find more information about CVE-2020-27939 on Apple's support website: https://support.apple.com/en-us/HT212011.