---
cve: "CVE-2026-20620"
severity: "HIGH"
cvss: 7.7
epss: "20%"
vendor: "Apple"
kev: false
exploited: false
published: "2026-02-11 23:16:05"
tags: [cve, security, high]
source: tsecurity.de CVE-Dossier
exported: "2026-09-11T06:58:41+02:00"
---

# CVE-2026-20620

> 7.7 HIGH

## Beschreibung

An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.3. An attacker may be able to cause unexpected system termination or read kernel memory.

## CVSS-Vektor

```
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Lokal | good |
| AC Komplexität | Gering | bad |
| PR Privilegien | Keine | bad |
| UI Interaktion | Keine | bad |
| S Scope | Unverändert | good |
| C Vertraulichkeit | Hoch | bad |
| I Integrität | Keine | good |
| A Verfügbarkeit | Hoch | bad |

## Referenzen

- <https://support.apple.com/en-us/126348>
- <https://support.apple.com/en-us/126349>
- <https://support.apple.com/en-us/126350>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2026-20620) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
