CVE-2020-9938 vulnerability in Apple Products
Published on October 22, 2020
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing a maliciously crafted image may lead to arbitrary code execution.
Products Associated with CVE-2020-9938
Want to know whenever a new CVE is published for Apple products? stack.watch will email you.
Affected Versions
Apple iOS:- Version unspecified and below iOS 13.6 and iPadOS 13.6 is affected.
- Version unspecified and below macOS Catalina 10.15.6 is affected.
- Version unspecified and below tvOS 13.4.8 is affected.
- Version unspecified and below watchOS 6.2.8 is affected.
- Version unspecified and below iTunes 12.10.8 for Windows is affected.
- Version unspecified and below iCloud for Windows 11.3 is affected.
- Version unspecified and below iCloud for Windows 7.20 is affected.
Exploit Probability
EPSS
0.42%
Percentile
61.76%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.