CVE Database · CVE-2020-3837
CVSS v3.1
7.8
EPSS
16.11%
Published
Feb 27, 2020
Modified
Oct 23, 2025
CISA Known Exploited Vulnerability
Added: 2022-06-27 · Due: 2022-07-18
Apply updates per vendor instructions.
Public PoC / Exploit (2)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. An application may be able to execute arbitrary code with kernel privileges.
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HWeaknesses (CWE)
Affected Products (5)
References (9)