| CERT-In Advisory  
                                                                      CIAD-2020-0080Multiple Vulnerabilities in Apple SafariOriginal Issue Date: November  18, 2020
 Severity Rating: High
 Software Affected  
Apple Safari versions prior to Safari 14.0.1 Overview Multiple vulnerabilities have been reported in Apple Safari which could allow a remote attacker to spoof URLs or execute arbitrary code on the target system. DescriptionThese vulnerabilities exist in Apple Safari due to improper input validation or improper memory management issues in macOS Catalina and macOS Mojave. A remote attacker could exploit these vulnerabilities by executing a specially crafted application. 
 Successful exploitation of these vulnerabilities could allow the attacker to spoof URLs or execute arbitrary code on the target system.
 
 
 Solution Apply appropriate patches as mentioned in the   
                                                   
														Apple Security Updates 
 Vendor InformationApple https://support.apple.com/en-gb/HT211934
 
 References Applehttps://support.apple.com/en-gb/HT211934
 
 CVE NameDisclaimerCVE-2020-9945
 CVE-2020-27918
 
 The information provided herein is on "as is" basis, without warranty of any kind. Contact Information Email: info@cert-in.org.in  Phone: +91-11-24368572Postal address Indian Computer Emergency Response Team (CERT-In) Ministry of Electronics and Information Technology
 Government of India
 Electronics Niketan
 6, CGO Complex, Lodhi Road,
 New Delhi - 110 003
 India
   |