A logic issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15.6, Security Update 2020-004 Mojave, Security Update 2020-004 High Sierra. Processing a maliciously crafted email may lead to writing arbitrary files.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Wowfunhappy/Fix-Apple-Mail-CVE-2020-9922
- https://github.com/houjingyi233/macOS-iOS-system-security
- https://github.com/nomi-sec/PoC-in-GitHub
- https://github.com/soosmile/POC