First published: Wed Sep 16 2020(Updated: )
A trust issue was addressed by removing a legacy API. This issue is fixed in iOS 14.0 and iPadOS 14.0, tvOS 14.0. An attacker may be able to misuse a trust relationship to download malicious content.
Credit: CodeColorist LightYear Security Lab of AntGroupCodeColorist LightYear Security Lab of AntGroup product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPadOS | <14.0 | |
Apple iPhone OS | <14.0 | |
Apple tvOS | <14.0 | |
Apple iOS | <14.0 | 14.0 |
Apple iPadOS | <14.0 | 14.0 |
Apple tvOS | <14.0 | 14.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2020-9979.
The title of the vulnerability is 'Assets. A trust issue was addressed by removing a legacy API.'
This vulnerability addressed a trust issue by removing a legacy API.
The software affected by this vulnerability includes Apple tvOS, Apple iOS, and Apple iPadOS versions up to and excluding 14.0.
To fix this vulnerability, update the affected software to version 14.0 or later.