CVE-2020-9789: Critical severity tvos vulnerability
ImageIO. An out-of-bounds write issue was addressed with improved bounds checking.
Other sources
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5, iTunes 12.10.7 for Windows, iCloud for Windows 11.2, iCloud for Windows 7.19. Processing a maliciously crafted image may lead to arbitrary code execution.
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2020-9827
- CVE-2020-9842
- CVE-2020-9815
- CVE-2020-9791
- CVE-2020-9829
- CVE-2020-9816
- CVE-2020-3878
- CVE-2020-9789
- CVE-2020-9790
- CVE-2020-9837
- CVE-2020-9821
- CVE-2020-9797
- CVE-2020-9852
- CVE-2020-9795
- CVE-2020-9808
- CVE-2020-9811
- CVE-2020-9812
- CVE-2020-9813
- CVE-2020-9814
- CVE-2020-9809
- CVE-2020-9994
- CVE-2014-9512
- CVE-2020-9854
- CVE-2020-9794
- CVE-2020-9839
- CVE-2020-9805
- CVE-2020-9802
- CVE-2020-9850
- CVE-2020-9843
- CVE-2020-9803
- CVE-2020-9806
- CVE-2020-9807
- CVE-2020-9800
- CVE-2019-20503
- CVE-2020-9772
- CVE-2020-9826
- CVE-2020-9804
- CVE-2020-9831
- CVE-2020-9779
- CVE-2020-3882
- CVE-2020-9828
- CVE-2020-9856
- CVE-2020-9847
- CVE-2020-9855
- CVE-2020-9822
- CVE-2020-9796
- CVE-2019-14868
- CVE-2020-9857
- CVE-2020-9817
- CVE-2020-9851
- CVE-2020-9793
- CVE-2020-9825
- CVE-2020-9771
- CVE-2020-9788
- CVE-2020-9824
- CVE-2020-9810
- CVE-2020-9792
- CVE-2020-9844
- CVE-2020-9830
- CVE-2020-9834
- CVE-2020-9833
- CVE-2020-9832
- CVE-2020-9841
- CVE-2019-20044
- CVE-2020-9819
- CVE-2020-9818
- CVE-2020-6616
- CVE-2020-9838
- CVE-2020-9835
- CVE-2020-9820
- CVE-2020-9823
- CVE-2020-9848
Frequently Asked Questions
What is CVE-2020-9789?
CVE-2020-9789 is an out-of-bounds write vulnerability in ImageIO that has been addressed with improved bounds checking.
Which software are affected by CVE-2020-9789?
CVE-2020-9789 affects Apple iOS up to version 13.5, Apple iPadOS up to version 13.5, macOS Catalina up to version 10.15.5, Apple watchOS up to version 6.2.5, Apple tvOS up to version 13.4.5, Apple iTunes for Windows up to version 12.10.7, and Apple iCloud for Windows up to version 11.2 and 7.19.
What is the severity of CVE-2020-9789?
The severity of CVE-2020-9789 is not specified in the provided information.
How can I fix CVE-2020-9789?
To fix CVE-2020-9789, users should update their Apple devices and software to the latest available versions.
Where can I find more information about CVE-2020-9789?
More information about CVE-2020-9789 can be found on Apple's official support website.