CVE-2020-9819
CVE-2020-9819
In short
A specially crafted email message can cause excessive memory usage or heap corruption on Apple devices, potentially crashing the mail app or causing instability.
Technical detail
A heap buffer overflow vulnerability exists in iOS/iPadOS mail processing that allows an attacker to send a maliciously crafted email message, triggering memory corruption without requiring user interaction beyond receiving the message. The vulnerability affects iOS 13.4 and earlier, iOS 12.4.6 and earlier, and watchOS versions prior to 6.2.5 and 5.3.7.
Summary generated and translated by AI from the official description.
A memory consumption issue was addressed with improved memory handling. This issue is fixed in iOS 13.5 and iPadOS 13.5, iOS 12.4.7, watchOS 6.2.5, watchOS 5.3.7. Processing a maliciously crafted mail message may lead to heap corruption.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →