First published: Tue Jan 28 2020(Updated: )
PackageKit. A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks.
Credit: Csaba Fitzl @theevilbit product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mac OS X | <10.15.3 | |
Apple macOS Catalina | <10.15.3 | 10.15.3 |
Apple Mojave | ||
Apple High Sierra |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-3830 is a vulnerability that existed in the handling of symlinks in PackageKit.
macOS Catalina version 10.15.3, Mojave, and High Sierra are affected by CVE-2020-3830.
CVE-2020-3830 was addressed with improved validation of symlinks in the affected software.
The severity of CVE-2020-3830 has not been specified.
You can find more information about CVE-2020-3830 at the following reference: https://support.apple.com/en-us/HT210919