First published: Wed Jul 15 2020(Updated: )
An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1, Safari 13.1.2. Visiting a malicious website may lead to address bar spoofing.
Credit: an anonymous researcher Rahul d Kankrale (servicenger.com) Rayyan Bijoora @Bijoora The City SchoolPAF Chapter Ruilin Yang Tencent Security Xuanwu LabYoKo Kho @YoKoAcc PT Telekomunikasi IndonesiaZhiyang Zeng @Wester OPPO ZIWU Security Lab product-security@apple.com an anonymous researcher Rahul d Kankrale (servicenger.com) Rayyan Bijoora @Bijoora The City SchoolPAF Chapter Ruilin Yang Tencent Security Xuanwu LabYoKo Kho @YoKoAcc PT Telekomunikasi IndonesiaZhiyang Zeng @Wester OPPO ZIWU Security Lab
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Safari | <13.1.2 | 13.1.2 |
Apple macOS Big Sur | <11.0.1 | 11.0.1 |
Apple Safari | <13.1.2 | |
Apple Mac OS X | <11.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-9942 is a vulnerability in Safari that allows for an inconsistent user interface issue.
CVE-2020-9942 affects Safari by causing an inconsistent user interface issue.
The severity of CVE-2020-9942 is not provided in the information provided.
To fix CVE-2020-9942 in Safari, update to version 13.1.2 or later.
You can find more information about CVE-2020-9942 on the Apple support website.