First published: Wed Sep 16 2020(Updated: )
Audio. An out-of-bounds read was addressed with improved bounds checking.
Credit: JunDong Xie Ant Group LightJunDong Xie product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS | <11.0.1 | 11.0.1 |
tvOS | <14.0 | 14.0 |
Apple macOS | <11.1 | 11.1 |
macOS Catalina | ||
macOS Mojave | ||
Apple iOS, iPadOS, and watchOS | <7.0 | 7.0 |
Apple iOS and iPadOS | <14.0 | 14.0 |
Apple iOS, iPadOS, and macOS | <14.0 | 14.0 |
Apple iOS, iPadOS, and macOS | <14.0 | |
iPhone OS | <14.0 | |
Apple iOS and macOS | <11.1 | |
Apple iOS and macOS | >=10.14<10.14.6 | |
Apple iOS and macOS | >=10.15<10.15.7 | |
Apple iOS and macOS | =10.14.6 | |
Apple iOS and macOS | =10.14.6-security_update_2019-001 | |
Apple iOS and macOS | =10.14.6-security_update_2019-002 | |
Apple iOS and macOS | =10.14.6-security_update_2019-004 | |
Apple iOS and macOS | =10.14.6-security_update_2019-005 | |
Apple iOS and macOS | =10.14.6-security_update_2019-006 | |
Apple iOS and macOS | =10.14.6-security_update_2020-001 | |
Apple iOS and macOS | =10.14.6-security_update_2020-002 | |
Apple iOS and macOS | =10.14.6-security_update_2020-003 | |
Apple iOS and macOS | =10.14.6-security_update_2020-004 | |
Apple iOS and macOS | =10.14.6-security_update_2020-005 | |
Apple iOS and macOS | =10.14.6-security_update_2020-006 | |
Apple iOS and macOS | =10.15.7 | |
Apple iOS and macOS | =10.15.7-security_update_2020 | |
tvOS | <14.0 | |
Apple iOS, iPadOS, and watchOS | <7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-9944 is a vulnerability in the Audio component of Apple operating systems that allows for an out-of-bounds read.
CVE-2020-9944 can be exploited to read data outside the bounds of the intended memory, potentially leading to unauthorized access or information disclosure.
Apple tvOS 14.0, Apple iOS 14.0, Apple iPadOS 14.0, Apple watchOS 7.0, Apple macOS Big Sur up to version 11.0.1, Apple Catalina, and Apple Mojave are affected by CVE-2020-9944.
To fix CVE-2020-9944, update your Apple operating system to the remedy versions specified by Apple.
More information about CVE-2020-9944 can be found on the Apple support website. (Reference: [1])