CVE-2020-3909 in Apple and Oracle Products
Published on April 1, 2020
A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 13.4 and iPadOS 13.4, macOS Catalina 10.15.4, tvOS 13.4, watchOS 6.2, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. Multiple issues in libxml2.
Products Associated with CVE-2020-3909
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2020-3909 are published in these products:
Affected Versions
Apple iOS:- Version unspecified and below iOS 13.4 and iPadOS 13.4 is affected.
- Version unspecified and below macOS Catalina 10.15.4 is affected.
- Version unspecified and below tvOS 13.4 is affected.
- Version unspecified and below watchOS 6.2 is affected.
- Version unspecified and below iTunes for Windows 12.10.5 is affected.
- Version unspecified and below iCloud for Windows 10.9.3 is affected.
- Version unspecified and below iCloud for Windows 7.18 is affected.
Exploit Probability
EPSS
2.59%
Percentile
85.36%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.