A certificate validation issue existed when processing administrator added certificates. This issue was addressed with improved certificate validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. An attacker may have been able to impersonate a trusted website using shared key material for an administrator added certificate.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: apple
Published: 2020-10-22T17:54:39
Updated: 2024-08-04T10:43:05.479Z
Reserved: 2020-03-02T00:00:00
Link: CVE-2020-9868
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-10-22T18:15:14.050
Modified: 2023-01-09T16:41:59.350
Link: CVE-2020-9868
Redhat
No data.