CVE-2020-9794: SQL Injection
SQLite. An out-of-bounds read was addressed with improved bounds checking.
Other sources
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5, iTunes 12.10.7 for Windows, iCloud for Windows 11.2, iCloud for Windows 7.19. A malicious application may cause a denial of service or potentially disclose memory contents.
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2020-9827
- CVE-2020-9842
- CVE-2020-9815
- CVE-2020-9791
- CVE-2020-9829
- CVE-2020-9816
- CVE-2020-3878
- CVE-2020-9789
- CVE-2020-9790
- CVE-2020-9837
- CVE-2020-9821
- CVE-2020-9797
- CVE-2020-9852
- CVE-2020-9795
- CVE-2020-9808
- CVE-2020-9811
- CVE-2020-9812
- CVE-2020-9813
- CVE-2020-9814
- CVE-2020-9809
- CVE-2020-9994
- CVE-2014-9512
- CVE-2020-9854
- CVE-2020-9794
- CVE-2020-9839
- CVE-2020-9805
- CVE-2020-9802
- CVE-2020-9850
- CVE-2020-9843
- CVE-2020-9803
- CVE-2020-9806
- CVE-2020-9807
- CVE-2020-9800
- CVE-2019-20503
- CVE-2020-9772
- CVE-2020-9826
- CVE-2020-9804
- CVE-2020-9831
- CVE-2020-9779
- CVE-2020-3882
- CVE-2020-9828
- CVE-2020-9856
- CVE-2020-9847
- CVE-2020-9855
- CVE-2020-9822
- CVE-2020-9796
- CVE-2019-14868
- CVE-2020-9857
- CVE-2020-9817
- CVE-2020-9851
- CVE-2020-9793
- CVE-2020-9825
- CVE-2020-9771
- CVE-2020-9788
- CVE-2020-9824
- CVE-2020-9810
- CVE-2020-9792
- CVE-2020-9844
- CVE-2020-9830
- CVE-2020-9834
- CVE-2020-9833
- CVE-2020-9832
- CVE-2020-9841
- CVE-2019-20044
- CVE-2020-9819
- CVE-2020-9818
- CVE-2020-6616
- CVE-2020-9838
- CVE-2020-9835
- CVE-2020-9820
- CVE-2020-9823
- CVE-2020-9848
Frequently Asked Questions
What is CVE-2020-9794?
CVE-2020-9794 is a vulnerability in SQLite, where an out-of-bounds read was addressed with improved bounds checking.
Which software products are affected by CVE-2020-9794?
The affected software products include Apple iOS up to version 13.5, Apple iPadOS up to version 13.5, Apple tvOS up to version 13.4.5, Apple watchOS up to version 6.2.5, Apple macOS Catalina up to version 10.15.5, Apple Mojave, Apple High Sierra, Apple iCloud for Windows up to version 11.2, Apple iTunes for Windows up to version 12.10.7, and Apple iCloud for Windows up to version 7.19.
How severe is CVE-2020-9794?
The severity of CVE-2020-9794 is not specified in the provided information.
How can I fix CVE-2020-9794?
To fix CVE-2020-9794, update the affected software products to the specified versions listed in the Apple security advisory.
Where can I find more information about CVE-2020-9794?
You can find more information about CVE-2020-9794 at the following references: [link1](https://support.apple.com/en-us/HT211175), [link2](https://support.apple.com/en-us/HT211170), [link3](https://support.apple.com/en-us/HT211168).