CVE-2020-3906: High severity macos catalina vulnerability
Published Mar 24, 2020
·Updated
TCC. A logic issue was addressed with improved restrictions.
Other sources
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Catalina 10.15.4. A maliciously crafted application may be able to bypass code signing enforcement.
Credit
Patrick Wardle(Jamf)
Affected Software
4 affected componentsFixes available
apple macOS Catalina<10.15.4
10.15.4
apple Mojave
apple High Sierra
Apple iOS and macOS<10.15.4
Event History
Apr 1, 2020
CVE Published
via MITRE·05:50 PM
Data Sourced
via MITRE·05:50 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2020-9772
- CVE-2020-3903
- CVE-2020-3904
- CVE-2020-3883
- CVE-2020-6616
- CVE-2020-9853
- CVE-2020-3907
- CVE-2020-3908
- CVE-2020-3912
- CVE-2020-9779
- CVE-2020-3892
- CVE-2020-3893
- CVE-2020-3905
- CVE-2019-8853
- CVE-2020-9776
- CVE-2020-9828
- CVE-2020-3913
- CVE-2020-9829
- CVE-2020-3898
- CVE-2020-3881
- CVE-2020-3886
- CVE-2019-14615
- CVE-2020-3919
- CVE-2020-3851
- CVE-2020-3896
- CVE-2020-3914
- CVE-2020-9785
- CVE-2020-3909
- CVE-2020-3911
- CVE-2020-3910
- CVE-2020-3884
- CVE-2020-3915
- CVE-2020-9775
- CVE-2020-9771
- CVE-2020-3918
- CVE-2019-19232
- CVE-2020-9786
- CVE-2020-3906
- CVE-2020-3889
- CVE-2020-9769
- CVE-2020-9787
- CVE-2020-3902
Frequently Asked Questions
1
What is the CVE ID for this vulnerability?
The CVE ID for this vulnerability is CVE-2020-3906.
2
What software is affected by this vulnerability?
macOS Catalina version 10.15.4, Mojave, and High Sierra are affected by this vulnerability.
3
What is the severity of CVE-2020-3906?
The severity of CVE-2020-3906 is not mentioned in the provided information.
4
How can I fix this vulnerability?
Update macOS Catalina to version 10.15.5 or later to fix this vulnerability.
5
Where can I find more information about this vulnerability?
You can find more information about this vulnerability on the Apple support website: https://support.apple.com/en-us/HT211100