8.8
CVSSv3

CVE-2020-3843

Published: 27/02/2020 Updated: 31/05/2022
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 12.4.7, watchOS 5.3.7. A remote attacker may be able to cause unexpected system termination or corrupt kernel memory.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple watchos

apple iphone os

Recent Articles

How a nightmare wormable, wireless, automatic hijack-a-nearby-iPhone security flaw was found and fixed
The Register • Thomas Claburn in San Francisco • 03 Dec 2020

You're probably all patched by now, which is just as well Five bag $300,000 in bug bounties after finding 55 security holes in Apple's web apps, IT infrastructure

A Google security guru has published details of a critical hole in Apple's iOS that can be exploited by miscreants to hijack strangers' iPhones over the air without any user interaction. All a hacker would need to do is transmit carefully crafted, malicious AWDL packets to a victim's handheld to gain control of it. AWDL is Apple Wireless Direct Link, Cupertino's proprietary mesh networking protocol that is based on Wi-Fi. You don't need to be on the same conventional Wi-Fi network as your victim...