vulnerability
OS X update for Model I/O (CVE-2020-9973)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 9 | (AV:N/AC:M/Au:N/C:C/I:C/A:C) | Sep 25, 2020 | Sep 25, 2020 | Mar 27, 2026 |
Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:C)
Published
Sep 25, 2020
Added
Sep 25, 2020
Modified
Mar 27, 2026
Description
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.7, Security Update 2020-005 High Sierra, Security Update 2020-005 Mojave, iOS 14.0 and iPadOS 14.0. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.
Solutions
apple-osx-security-update-2020-005-high-sierraapple-osx-security-update-2020-005-mojaveapple-osx-upgrade-10_15_7
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.