CVE-2020-3885

A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. A file URL may be incorrectly processed.
References
Link Resource
https://support.apple.com/HT211101 Release Notes Vendor Advisory
https://support.apple.com/HT211102 Release Notes Vendor Advisory
https://support.apple.com/HT211104 Release Notes Vendor Advisory
https://support.apple.com/HT211105 Release Notes Vendor Advisory
https://support.apple.com/HT211106 Release Notes Vendor Advisory
https://support.apple.com/HT211107 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:icloud:*:*:*:*:*:windows:*:*
cpe:2.3:a:apple:icloud:*:*:*:*:*:windows:*:*
cpe:2.3:a:apple:itunes:*:*:*:*:*:windows:*:*
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2020-04-01 18:15

Updated : 2024-02-28 17:47


NVD link : CVE-2020-3885

Mitre link : CVE-2020-3885

CVE.ORG link : CVE-2020-3885


JSON object : View

Products Affected

apple

  • icloud
  • itunes
  • ipad_os
  • iphone_os
  • safari
  • tvos
CWE
CWE-670

Always-Incorrect Control Flow Implementation