CVE-2020-27932

Description

A type confusion issue was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 12.4.9, watchOS 6.2.9, Security Update 2020-006 High Sierra, Security Update 2020-006 Mojave, iOS 14.2 and iPadOS 14.2, watchOS 5.3.9, macOS Catalina 10.15.7 Supplemental Update, macOS Catalina 10.15.7 Update. A malicious application may be able to execute arbitrary code with kernel privileges.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
11.3

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in Apple iTunes (X64) 12.10.9Windows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 12.9.6Windows
Multiple Vulnerabilities are affected in Apple iTunes 12.10.9Windows
Multiple Vulnerabilities are affected in Apple iTunes 12.9.6Windows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 12.10Windows
Multiple Vulnerabilities are affected in Apple iTunes 12.10Windows
Vulnerabilities CVE-2020-27932 are affected in iCloud 11.4Windows
Multiple vulnerabilities are fixed in MacOS Catalina 10.15.7 - Auto RebootMac
Multiple vulnerabilities are fixed in macOS Catalina 10.15.7 Combo Update - Auto RebootMac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 12.10.9Mac
Vulnerabilities CVE-2020-27930,CVE-2020-27932,CVE-2020-27950 are fixed in MacOS Catalina 10.15.7 - Auto RebootMac
Vulnerabilities CVE-2020-27930,CVE-2020-27932,CVE-2020-27950 are fixed in macOS Catalina 10.15.7 Combo Update - Auto RebootMac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-342817Apple iTunes (X64) (12.13.4.4)
PATCH-310919Apple iTunes (X64) (12.10.0.7)
PATCH-342816Apple iTunes (12.13.4.4)
PATCH-310917Apple iTunes (12.10.0.7)
PATCH-602673MacOS Catalina 10.15.7 - Auto Reboot
PATCH-602674macOS Catalina 10.15.7 Combo Update - Auto Reboot
PATCH-602673MacOS Catalina 10.15.7 - Auto Reboot
PATCH-602674macOS Catalina 10.15.7 Combo Update - Auto Reboot

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234