CVE-2020-29623

low

Description

"Clear History and Website Data" did not clear the history. The issue was addressed with improved data deletion. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, iOS 14.3 and iPadOS 14.3, tvOS 14.3. A user may be unable to fully delete browsing history.

References

https://support.apple.com/en-us/HT212003

https://support.apple.com/en-us/HT212011

https://support.apple.com/en-us/HT212005

https://lists.fedoraproject.org/archives/list/[email protected]/message/L3L6ZZOU5JS7E3RFYGLP7UFLXCG7TNLU/

https://lists.fedoraproject.org/archives/list/[email protected]/message/JN6ZOD62CTO54CHTMJTHVEF6R2Y532TJ/

https://security.gentoo.org/glsa/202104-03

Details

Source: MITRE

Published: 2021-04-02

Updated: 2021-06-02

Risk Information

CVSS v2

Base Score: 2.1

Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Impact Score: 2.9

Exploitability Score: 3.9

Severity: LOW

CVSS v3

Base Score: 3.3

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

Impact Score: 1.4

Exploitability Score: 1.8

Severity: LOW