CVE-2020-27898

medium

Description

A denial of service issue was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.0.1. An attacker may be able to bypass Managed Frame Protection.

References

http://seclists.org/fulldisclosure/2020/Dec/26

http://seclists.org/fulldisclosure/2020/Dec/32

https://support.apple.com/en-us/HT211931

https://support.apple.com/kb/HT212011

Details

Source: MITRE

Published: 2020-12-08

Updated: 2021-03-11

Type: CWE-252

Risk Information

CVSS v2

Base Score: 4.3

Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Impact Score: 2.9

Exploitability Score: 8.6

Severity: MEDIUM

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

Impact Score: 3.6

Exploitability Score: 1.8

Severity: MEDIUM