Actively Exploited in the Wild
This vulnerability is being actively exploited in the wild.
Apple Multiple Products Code Execution Vulnerability
Vulnerability
A memory consumption vulnerability allowing arbitrary code execution with kernel privileges has been identified in multiple Apple products, including iOS, iPadOS, macOS, watchOS, and tvOS. This issue arises from inadequate memory management, leading to excessive memory usage. The vulnerability has been addressed in iOS 13.5.1, iPadOS 13.5.1, macOS Catalina 10.15.5 Supplemental Update, tvOS 13.4.6, and watchOS 6.2.6.
Impact
Exploitation of this vulnerability could allow an application to execute arbitrary code with kernel privileges, potentially leading to unauthorized access or control over the device.
Remediation
Users are advised to update to the latest versions of iOS, iPadOS, macOS, tvOS, or watchOS, depending on their device. Instructions for updating can be found on the Apple Support website.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
