Back to search
CVE-2020-9901
Published: Oct 22, 2020
Modified: Aug 4, 2024
PUBLISHED
Description
An issue existed within the path validation logic for symlinks. This issue was addressed with improved path sanitization. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8. A local attacker may be able to elevate their privileges.
| Vendor | Product | Versions |
|---|---|---|
Apple | iOS | affected unspecified - < iOS 13.6 and iPadOS 13.6 |
Apple | macOS | affected unspecified - < macOS Catalina 10.15.6 |
Apple | tvOS | affected unspecified - < tvOS 13.4.8 |
References
https://support.apple.com/kb/HT211289
x_refsource_MISC
https://support.apple.com/kb/HT211288
x_refsource_MISC
https://support.apple.com/kb/HT211290
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now