CVE-2020-3896: Medium severity macos catalina vulnerability
Published Mar 24, 2020
·Updated
iTunes. This issue was addressed by removing the vulnerable code.
Other sources
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Catalina 10.15.4, Security Update 2020-002 Mojave, Security Update 2020-002 High Sierra. A malicious application may be able to overwrite arbitrary files.
Credit
Christoph Falta
Affected Software
21 affected componentsFixes available
apple macOS Catalina<10.15.4
10.15.4
apple Mojave
apple High Sierra
Apple iOS and macOS>=10.13<10.13.6
Apple iOS and macOS>=10.14<10.14.6
Apple iOS and macOS>=10.15<10.15.4
Apple iOS and macOS=10.13.6
Apple iOS and macOS=10.13.6-security_update_2018-002
Apple iOS and macOS=10.13.6-security_update_2018-003
Apple iOS and macOS=10.13.6-security_update_2019-001
Apple iOS and macOS=10.13.6-security_update_2019-002
Apple iOS and macOS=10.13.6-security_update_2019-003
Apple iOS and macOS=10.13.6-security_update_2019-004
Apple iOS and macOS=10.13.6-security_update_2019-005
Apple iOS and macOS=10.13.6-security_update_2019-006
Apple iOS and macOS=10.13.6-security_update_2019-007
Apple iOS and macOS=10.13.6-security_update_2020-001
Apple iOS and macOS=10.14.6
Apple iOS and macOS=10.14.6-security_update_2019-001
Apple iOS and macOS=10.14.6-security_update_2019-002
Apple iOS and macOS=10.14.6-security_update_2020-001
Event History
Dec 23, 2021
CVE Published
via MITRE·07:48 PM
Data Sourced
via MITRE·07:48 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2020-9772
- CVE-2020-3903
- CVE-2020-3904
- CVE-2020-3883
- CVE-2020-6616
- CVE-2020-9853
- CVE-2020-3907
- CVE-2020-3908
- CVE-2020-3912
- CVE-2020-9779
- CVE-2020-3892
- CVE-2020-3893
- CVE-2020-3905
- CVE-2019-8853
- CVE-2020-9776
- CVE-2020-9828
- CVE-2020-3913
- CVE-2020-9829
- CVE-2020-3898
- CVE-2020-3881
- CVE-2020-3886
- CVE-2019-14615
- CVE-2020-3919
- CVE-2020-3851
- CVE-2020-3896
- CVE-2020-3914
- CVE-2020-9785
- CVE-2020-3909
- CVE-2020-3911
- CVE-2020-3910
- CVE-2020-3884
- CVE-2020-3915
- CVE-2020-9775
- CVE-2020-9771
- CVE-2020-3918
- CVE-2019-19232
- CVE-2020-9786
- CVE-2020-3906
- CVE-2020-3889
- CVE-2020-9769
- CVE-2020-9787
- CVE-2020-3902
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-3896.
2
What is the title of this vulnerability?
The title of this vulnerability is iTunes.
3
How was this vulnerability addressed?
This vulnerability was addressed by removing the vulnerable code.
4
Which software versions are affected by this vulnerability?
macOS Catalina versions up to and excluding 10.15.4, Mojave, and High Sierra are affected by this vulnerability.
5
Where can I find more information about this vulnerability?
You can find more information about this vulnerability on Apple's support page at https://support.apple.com/en-us/HT211100.