CVE-2020-9983 is an out-of-bounds write vulnerability in Safari 14.0 and earlier, affecting Apple and Fedora Project products. This flaw, rated 8.8 HIGH, allows remote attackers to achieve code execution by tricking users into processing maliciously crafted web content. While no public exploits or active exploitation have been observed, and community discussion is minimal, the high severity indicates a significant risk if exploited.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
11.5CPE matchmatch criteria | cpe:2.3:a:apple:icloud:11.5:*:*:*:*:windows:*:* | ||
12.10.9CPE matchmatch criteria | cpe:2.3:a:apple:itunes:12.10.9:*:*:*:*:windows:*:* | ||
< 14.0CPE matchmatch criteria | cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* | ||
< 14.0CPE matchmatch criteria | cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* | ||
< 14.0CPE matchmatch criteria | cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.