CVE-2020-3865

Name
CVE-2020-3865
Description
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, tvOS 13.3.1, Safari 13.0.5, iTunes for Windows 12.10.4, iCloud for Windows 11.0, iCloud for Windows 7.17. Processing maliciously crafted web content may lead to arbitrary code execution.
NVD Severity
high
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Release Notes https://support.apple.com/HT210947
Release Notes https://support.apple.com/HT210948
Mailing List http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00004.html
GENTOO https://security.gentoo.org/glsa/202003-22

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:apple:icloud:*:*:*:*:*:windows:*:* icloud >= None < 7.17
cpe:2.3:a:apple:icloud:*:*:*:*:*:windows:*:* icloud >= 10.0 <= 10.8
cpe:2.3:a:apple:itunes:*:*:*:*:*:windows:*:* itunes >= None < 12.10.4
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* safari >= None < 13.0.5
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* ipados >= None < 13.3.1
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* iphone_os >= None < 13.3.1
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* tvos >= None < 13.3.1

Vulnerable and fixed packages

Source package Branch Version Maintainer Status