Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2020-9922

Description

A logic issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15.6, Security Update 2020-004 Mojave, Security Update 2020-004 High Sierra. Processing a maliciously crafted email may lead to writing arbitrary files.

POC

Reference

No PoCs from references.

Github

- https://github.com/ARPSyndicate/cvemon

- https://github.com/Wowfunhappy/Fix-Apple-Mail-CVE-2020-9922

- https://github.com/houjingyi233/macOS-iOS-system-security

- https://github.com/nomi-sec/PoC-in-GitHub

- https://github.com/soosmile/POC