First published: Tue Jan 28 2020(Updated: )
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. An application may be able to execute arbitrary code with kernel privileges.
Credit: Brandon Azad Google Project ZeroBrandon Azad Google Project Zero product-security@apple.com Brandon Azad Google Project ZeroBrandon Azad Google Project Zero product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple watchOS | <6.1.2 | 6.1.2 |
Apple macOS Catalina | <10.15.3 | 10.15.3 |
Apple Mojave | ||
Apple High Sierra | ||
Apple iPadOS | <13.3.1 | |
Apple iPhone OS | <13.3.1 | |
Apple Mac OS X | <10.15.3 | |
Apple tvOS | <13.3.1 | |
Apple watchOS | <6.1.2 | |
Apple tvOS | <13.3.1 | 13.3.1 |
Apple iOS | <13.3.1 | 13.3.1 |
Apple iPadOS | <13.3.1 | 13.3.1 |
Apple Multiple Products | ||
<13.3.1 | ||
<13.3.1 | ||
<10.15.3 | ||
<13.3.1 | ||
<6.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-3837 is a memory corruption vulnerability in Apple iOS, iPadOS, macOS, tvOS, and watchOS.
The severity of CVE-2020-3837 is not specified in the provided information.
An application can exploit CVE-2020-3837 to execute code with kernel privileges.
Apple iOS, iPadOS, macOS, tvOS, and watchOS are affected by CVE-2020-3837.
Fixes for CVE-2020-3837 are provided by Apple in the referenced support articles.