Back to search
CVE-2020-9868
Published: Oct 22, 2020
Modified: Aug 4, 2024
PUBLISHED
Description
A certificate validation issue existed when processing administrator added certificates. This issue was addressed with improved certificate validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. An attacker may have been able to impersonate a trusted website using shared key material for an administrator added certificate.
| Vendor | Product | Versions |
|---|---|---|
Apple | iOS | affected unspecified - < iOS 13.6 and iPadOS 13.6 |
Apple | macOS | affected unspecified - < macOS Catalina 10.15.6 |
Apple | tvOS | affected unspecified - < tvOS 13.4.8 |
Apple | watchOS | affected unspecified - < watchOS 6.2.8 |
References
https://support.apple.com/kb/HT211289
x_refsource_MISC
https://support.apple.com/kb/HT211288
x_refsource_MISC
https://support.apple.com/kb/HT211290
x_refsource_MISC
https://support.apple.com/kb/HT211291
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now