First published: Wed Jul 15 2020(Updated: )
An information disclosure issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15.6, watchOS 6.2.8. A malicious application may disclose restricted memory.
Credit: Catalin Valeriu Lita SecurityScorecardCatalin Valeriu Lita SecurityScorecard product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS Catalina | <10.15.6 | 10.15.6 |
Apple Mojave | ||
Apple High Sierra | ||
Apple Mac OS X | <10.15.6 | |
Apple watchOS | <6.2.8 | |
Apple watchOS | <6.2.8 | 6.2.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-9997 is an information disclosure issue in the Kernel that was addressed with improved state management.
macOS Catalina versions up to 10.15.6, Mojave, High Sierra, and watchOS versions up to 6.2.8 are affected by CVE-2020-9997.
To fix CVE-2020-9997, update your macOS to version 10.15.6 or later, or update your watchOS to version 6.2.8 or later.
You can find more information about CVE-2020-9997 on Apple's support page: https://support.apple.com/en-us/HT211289