CVE-2020-9828 is an out-of-bounds read vulnerability affecting Apple macOS Catalina, specifically fixed in version 10.15.4. This flaw allows a remote attacker to potentially leak sensitive user information due to insufficient input validation. With a CVSS score of 7.5 (HIGH), it presents a low complexity attack that does not require user interaction or privileges. While the vulnerability is not listed on CISA's KEV catalog and has no known public exploits or significant community discussion, it still poses a risk to unpatched systems.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 10.15.4CPE matchmatch criteria | cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.