First published: Mon Nov 02 2020(Updated: )
A stack overflow issue existed in Swift for Linux. The issue was addressed with improved input validation for dealing with deeply nested malicious JSON input.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Swift | <=5.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9861 is a stack overflow vulnerability in Swift for Linux.
CVE-2020-9861 has a severity rating of 7.5 out of 10.
CVE-2020-9861 affects Swift for Linux version 5.1.4 on Ubuntu.
CVE-2020-9861 can be exploited by an attacker to cause a stack overflow and potentially execute arbitrary code.
CVE-2020-9861 can be fixed by updating to a version of Swift for Linux that includes the improved input validation.