Security features bypass in watchOS - CVE-2020-9974
Published: November 6, 2020
Vulnerability details
The vulnerability allows a local user to gain access to sensitive information.
The vulnerability exists within the OS kernel that allows a local user to run a specially crafted program and determine kernel memory layout. This vulnerability can be used to bypass implemented security restrictions and leverage exploitation of other vulnerabilities.
Affected software
macOS
tvOS
iPadOS
Apple iOS
How to mitigate CVE-2020-9974
tvOS - update to 14.2 18K57
iPadOS - update to 14.2 18B92
Apple iOS - update to 14.2 18B92