A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 13.4 and iPadOS 13.4, macOS Catalina 10.15.4, tvOS 13.4, watchOS 6.2, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. Multiple issues in libxml2.
References
Link | Resource |
---|---|
https://support.apple.com/HT211100 | Vendor Advisory |
https://support.apple.com/HT211101 | Vendor Advisory |
https://support.apple.com/HT211102 | Vendor Advisory |
https://support.apple.com/HT211103 | Vendor Advisory |
https://support.apple.com/HT211105 | Vendor Advisory |
https://support.apple.com/HT211106 | Vendor Advisory |
https://support.apple.com/HT211107 | Vendor Advisory |
https://www.oracle.com/security-alerts/cpuoct2020.html | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2020-04-01 11:15
Updated : 2022-06-02 11:44
NVD link : CVE-2020-3909
Mitre link : CVE-2020-3909
JSON object : View
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Products Affected
apple
- itunes
- tvos
- icloud
- mac_os_x
- watchos
- iphone_os
- ipados
oracle
- sun_zfs_storage_appliance_kit_software