CVE-2020-9979: Medium severity tvos vulnerability
Published Sep 16, 2020
·Updated
A trust issue was addressed by removing a legacy API. This issue is fixed in iOS 14.0 and iPadOS 14.0, tvOS 14.0. An attacker may be able to misuse a trust relationship to download malicious content.
Other sources
Assets. A trust issue was addressed by removing a legacy API.
Credit
CodeColorist(LightYear Security Lab of AntGroup)
Affected Software
6 affected componentsFixes available
tvOS<14.0
14.0
Apple iOS and iPadOS<14.0
14.0
Apple iOS, iPadOS, and macOS<14.0
14.0
Apple iOS, iPadOS, and macOS<14.0
iPhone OS<14.0
tvOS<14.0
Event History
Oct 27, 2020
CVE Published
via MITRE·08:52 PM
Data Sourced
via MITRE·08:52 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2020-9979
- CVE-2020-9943
- CVE-2020-9944
- CVE-2020-9960
- CVE-2020-9954
- CVE-2020-9949
- CVE-2020-9999
- CVE-2020-9965
- CVE-2020-9966
- CVE-2020-29629
- CVE-2020-9956
- CVE-2020-9962
- CVE-2020-27931
- CVE-2020-29639
- CVE-2020-9978
- CVE-2020-36521
- CVE-2020-9961
- CVE-2020-9955
- CVE-2020-9876
- CVE-2020-9967
- CVE-2020-9975
- CVE-2020-9976
- CVE-2020-9981
- CVE-2020-9971
- CVE-2020-9969
- CVE-2020-9968
- CVE-2020-13434
- CVE-2020-13435
- CVE-2020-9991
- CVE-2020-15358
- CVE-2020-13631
- CVE-2020-9849
- CVE-2020-13630
- CVE-2020-9947
- CVE-2020-9950
- CVE-2020-9951
- CVE-2020-9983
- CVE-2020-9952
- CVE-2020-10013
- CVE-2020-9958
- CVE-2020-9773
- CVE-2020-9992
- CVE-2020-9964
- CVE-2019-14899
- CVE-2020-9941
- CVE-2020-9988
- CVE-2020-9989
- CVE-2020-13520
- CVE-2020-6147
- CVE-2020-9972
- CVE-2020-9973
- CVE-2020-9996
- CVE-2020-9946
- CVE-2020-9963
- CVE-2020-9977
- CVE-2020-9993
- CVE-2020-9959
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-9979.
2
What is the title of the vulnerability?
The title of the vulnerability is 'Assets. A trust issue was addressed by removing a legacy API.'
3
What was addressed in this vulnerability?
This vulnerability addressed a trust issue by removing a legacy API.
4
Which software is affected by this vulnerability?
The software affected by this vulnerability includes Apple tvOS, Apple iOS, and Apple iPadOS versions up to and excluding 14.0.
5
How can I fix this vulnerability?
To fix this vulnerability, update the affected software to version 14.0 or later.