漏洞信息详情
Apple CoreCapture 资源管理错误漏洞
漏洞简介
Apple CoreCapture是美国苹果(Apple)公司的针对 IEEE 802.11的主要日志记录和跟踪框架。
Apple CoreCapture存在资源管理错误漏洞,该漏洞允许应用程序可以使用内核特权执行任意代码。以下产品及版本受到影响:Mac Pro (2013 and later), MacBook Air (2013 and later), MacBook Pro (Late 2013 and later), Mac mini (2014 and later), iMac (2014 and later), MacBook (2015 and later), iMac Pro (all models)。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://support.apple.com/en-us/HT211931
参考网址
来源:MISC
链接:https://support.apple.com/en-us/HT211843
来源:MISC
链接:https://support.apple.com/en-us/HT211931
来源:MISC
链接:https://support.apple.com/en-us/HT211844
来源:MISC
链接:https://support.apple.com/en-us/HT211289
来源:MISC
链接:https://support.apple.com/en-us/HT211850
来源:FULLDISC
链接:http://seclists.org/fulldisclosure/2020/Dec/32
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Apple-macOS-11-multiple-vulnerabilities-33899
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/160061/Apple-Security-Advisory-2020-11-13-3.html
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2020-9949
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.3181.2/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.4060.2/
受影响实体
暂无
补丁
- Apple CoreCapture 资源管理错误漏洞的修复措施<!--2020-11-13-->
还没有评论,来说两句吧...