This issue was addressed with improved checks. This issue is fixed in iOS 13.4 and iPadOS 13.4, macOS Catalina 10.15.4, tvOS 13.4, watchOS 6.2. An application may be able to use arbitrary entitlements.
References
Link Resource
https://support.apple.com/HT211100 Release Notes Vendor Advisory
https://support.apple.com/HT211101 Release Notes Vendor Advisory
https://support.apple.com/HT211102 Release Notes Vendor Advisory
https://support.apple.com/HT211103 Release Notes Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: apple

Published: 2020-04-01T17:45:03

Updated: 2020-10-16T16:00:59

Reserved: 2019-12-18T00:00:00


Link: CVE-2020-3883

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-04-01T18:15:15.707

Modified: 2020-04-08T19:09:27.347


Link: CVE-2020-3883

JSON object: View

cve-icon Redhat Information

No data.