CVE-2021-23841
- EPSS 0.67%
- Veröffentlicht 16.02.2021 17:15:13
- Zuletzt bearbeitet 21.11.2024 05:51:55
The OpenSSL public API function X509_issuer_and_serial_hash() attempts to create a unique hash value based on the issuer and serial number data contained within an X509 certificate. However it fails to correctly handle any errors that may occur while...
CVE-2020-9991
- EPSS 2.14%
- Veröffentlicht 08.12.2020 22:15:19
- Zuletzt bearbeitet 21.11.2024 05:41:39
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.0, iOS 14.0 and iPadOS 14.0, iCloud for Windows 7.21, tvOS 14.0. A remote attacker may be able to cause a denial of service.
CVE-2020-27918
- EPSS 0.23%
- Veröffentlicht 08.12.2020 22:15:18
- Zuletzt bearbeitet 21.11.2024 05:22:03
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14.2, iCloud for Windows 11.5, Safari 14.0.1, tvOS 14.2, iTunes 12.11 for Windows. Processing maliciou...
CVE-2020-27905
- EPSS 0.53%
- Veröffentlicht 08.12.2020 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:22:01
A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. A malicious application may be able to execute arbitrary code with system privileges.
CVE-2020-27909
- EPSS 0.52%
- Veröffentlicht 08.12.2020 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:22:01
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. Processing a maliciously crafted audio file may lead to arbitrary code execution.
CVE-2020-27910
- EPSS 0.81%
- Veröffentlicht 08.12.2020 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:22:02
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. Processing a maliciously crafted audio file may lead to arbitrary code execution.
CVE-2020-27911
- EPSS 2.51%
- Veröffentlicht 08.12.2020 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:22:02
An integer overflow was addressed through improved input validation. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14.2, iCloud for Windows 11.5, tvOS 14.2, iTunes 12.11 for Windows. A remote attacker may be able to ca...
CVE-2020-27912
- EPSS 0.99%
- Veröffentlicht 08.12.2020 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:22:02
An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14.2, iCloud for Windows 11.5, tvOS 14.2, iTunes 12.11 for Windows. Processing a maliciously crafted im...
CVE-2020-27916
- EPSS 0.62%
- Veröffentlicht 08.12.2020 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:22:02
An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. Processing a maliciously crafted audio file may lead to arbitrary code execution.
CVE-2020-27917
- EPSS 0.71%
- Veröffentlicht 08.12.2020 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:22:02
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14.2, iCloud for Windows 11.5, tvOS 14.2, iTunes 12.11 for Windows. Processing maliciously crafted web...