A validation issue was addressed with improved logic. This issue is fixed in macOS Catalina 10.15.1. A malicious application may be able to gain root privileges.
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
APPLE-SA-2019-10-29-2 macOS Catalina 10151, Security Update
2019-001 Mojave, Security Update 2019-006 High Sierra
macOS Catalina 10151, Security Update 2019-001 Mojave,
Security Update 2019-006 High Sierra are now available and address
the following:
Accounts
Available for: macOS Catalina 1015 ...