CVE-2020-27938: Apple Mac OS X

High severity, CVSS 7.8. EPSS: 0.7% chance of exploitation in the next 30 days.

A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave. A malicious application may be able to elevate privileges.

Affected products

  • Apple Mac OS X: before 11.2.0 (fixed in 11.2.0); before 11.1.0 (fixed in 11.1.0)

Published 2021-04-02. Last modified 2026-06-17.