First published: Tue Jan 28 2020(Updated: )
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. An application may be able to execute arbitrary code with kernel privileges.
Credit: Brandon Azad Google Project Zero product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Multiple Products | ||
tvOS | <13.3.1 | 13.3.1 |
macOS Catalina | <10.15.3 | 10.15.3 |
macOS Mojave | ||
macOS High Sierra | ||
Apple iOS, iPadOS, and watchOS | <6.1.2 | 6.1.2 |
Apple iOS and iPadOS | <13.3.1 | 13.3.1 |
Apple iOS, iPadOS, and macOS | <13.3.1 | 13.3.1 |
Apple iOS, iPadOS, and macOS | <13.3.1 | |
iPhone OS | <13.3.1 | |
Apple iOS and macOS | <10.15.3 | |
tvOS | <13.3.1 | |
Apple iOS, iPadOS, and watchOS | <6.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-3837 is a memory corruption vulnerability in Apple iOS, iPadOS, macOS, tvOS, and watchOS.
The severity of CVE-2020-3837 is not specified in the provided information.
An application can exploit CVE-2020-3837 to execute code with kernel privileges.
Apple iOS, iPadOS, macOS, tvOS, and watchOS are affected by CVE-2020-3837.
Fixes for CVE-2020-3837 are provided by Apple in the referenced support articles.