#VU48172 Type Confusion in macOS - CVE-2020-27932
Published: November 6, 2020
macOS
Apple Inc.
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a type confusion error in macOS kernel. A local user can run a specially crafted application to trigger a type confusion error and execute arbitrary code with elevated privileges.
Note, this vulnerability is being actively exploited in the wild.