First published: Tue Mar 24 2020(Updated: )
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.4. A remote attacker may be able to leak sensitive user information.
Credit: Jianjun Dai Qihoo 360 Alpha LabJianjun Dai Qihoo 360 Alpha Lab product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mac OS X | <10.15.4 | |
Apple macOS Catalina | <10.15.5 | 10.15.5 |
Apple Mojave | ||
Apple High Sierra |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2020-9828.
The title of the vulnerability is 'CoreBluetooth. An out-of-bounds read was addressed with improved input validation.'
The vulnerability is related to CoreBluetooth and involves an out-of-bounds read, which has been addressed by improving input validation.
The affected software includes macOS Catalina (up to version 10.15.5), Apple Mojave, and Apple High Sierra.
To fix this vulnerability, it is recommended to update macOS Catalina to version 10.15.5 or later.