Unrated severityCISA KEVNVD Advisory· Published Dec 8, 2020· Updated Oct 21, 2025
CVE-2020-27930
CVE-2020-27930
Description
A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 12.4.9, watchOS 6.2.9, Security Update 2020-006 High Sierra, Security Update 2020-006 Mojave, iOS 14.2 and iPadOS 14.2, watchOS 5.3.9, macOS Catalina 10.15.7 Supplemental Update, macOS Catalina 10.15.7 Update. Processing a maliciously crafted font may lead to arbitrary code execution.
Affected products
3- Range: unspecified
- Range: unspecified
- Apple/iOS and iPadOSv5Range: unspecified
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- packetstormsecurity.com/files/161294/Apple-Safari-Remote-Code-Execution.htmlmitrex_refsource_MISC
- seclists.org/fulldisclosure/2020/Dec/32mitremailing-listx_refsource_FULLDISC
- support.apple.com/en-us/HT211928mitrex_refsource_MISC
- support.apple.com/en-us/HT211929mitrex_refsource_MISC
- support.apple.com/en-us/HT211931mitrex_refsource_MISC
- support.apple.com/en-us/HT211940mitrex_refsource_MISC
- support.apple.com/en-us/HT211944mitrex_refsource_MISC
- support.apple.com/en-us/HT211945mitrex_refsource_MISC
- support.apple.com/en-us/HT211946mitrex_refsource_MISC
- support.apple.com/en-us/HT211947mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.