Vulnerability Details CVE-2020-3886
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Catalina 10.15.4, Security Update 2020-002 Mojave, Security Update 2020-002 High Sierra. A malicious application may be able to execute arbitrary code with kernel privileges.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 56.8%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 9.3
Products affected by CVE-2020-3886
-
cpe:2.3:o:apple:mac_os_x:10.13
-
cpe:2.3:o:apple:mac_os_x:10.13.0
-
cpe:2.3:o:apple:mac_os_x:10.13.1
-
cpe:2.3:o:apple:mac_os_x:10.13.2
-
cpe:2.3:o:apple:mac_os_x:10.13.3
-
cpe:2.3:o:apple:mac_os_x:10.13.4
-
cpe:2.3:o:apple:mac_os_x:10.13.5
-
cpe:2.3:o:apple:mac_os_x:10.13.6
-
cpe:2.3:o:apple:mac_os_x:10.14
-
cpe:2.3:o:apple:mac_os_x:10.14.0
-
cpe:2.3:o:apple:mac_os_x:10.14.1
-
cpe:2.3:o:apple:mac_os_x:10.14.2
-
cpe:2.3:o:apple:mac_os_x:10.14.3
-
cpe:2.3:o:apple:mac_os_x:10.14.4
-
cpe:2.3:o:apple:mac_os_x:10.14.5
-
cpe:2.3:o:apple:mac_os_x:10.14.6
-
cpe:2.3:o:apple:mac_os_x:10.15
-
cpe:2.3:o:apple:mac_os_x:10.15.1
-
cpe:2.3:o:apple:mac_os_x:10.15.2
-
cpe:2.3:o:apple:mac_os_x:10.15.3