On Thursday, technology giant Apple apprised customers that it fixed as many as four flaws across macOS Catalina, High Sierra and Mojave.

CVE-2020-9973 is one of the security breaks impacting the Model I/O component. The company says misuse of the vulnerability, which involves the handing out of a malicious USD file, could result in arbitrary code execution or a DoS condition.

Reported to Apple by a Cisco Talos researcher, this flaw impacts all versions of macOS and it was also fixed earlier this month in iOS and iPadOS with the release of version 14.

CVE-2020-9968 is another flaw that affects all versions of macOS and which Apple also fixed in iOS 14. Adam Chester of TrustedSec has been attributed for reporting it to Apple.

Apple has also fixed an arbitrary code execution susceptibility that can be misused using malicious image files. This issue, recognized by Xingwei Lin of Ant Group Light-Year Security Lab, impacts the ImageIO module in macOS High Sierra and Mojave.

The fourth issue fixed this week in macOS impacts the Mail component, which can let a remote attacker to “unexpectedly alter application state.” The flaw was exposed by researchers from the FH Münster University of Applied Sciences in Germany.TrustedSec

Leave a Reply

Your email address will not be published. Required fields are marked *