Apple macOS Catalina 10.15.3 Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability

Summary

A remote attacker may be able to cause unexpected application termination or arbitrary code execution

 

Credit:

The information has been provided by Jianjun Dai

The original article can be found at https://support.apple.com/HT210919


Details

A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.3. A remote attacker may be able to cause unexpected application termination or arbitrary code execution.

Vulnerable Systems:

macOS Mojave 10.14.6,

macOS High Sierra 10.13.6,

macOS Catalina 10.15.2

    CVE Information:

    CVE-2020-3849

    Disclosure Timeline:
    Published Date:04/08/2020

    Categories: FeaturedNews