CVE-2020-9770: Apple iPadOS

Medium severity, CVSS 6.5. EPSS: 1.2% chance of exploitation in the next 30 days.

A logic issue was addressed with improved state management. This issue is fixed in iOS 13.4 and iPadOS 13.4. An attacker in a privileged network position may be able to intercept Bluetooth traffic.

Affected products

  • Apple iPadOS: before 13.4 (fixed in 13.4)
  • Apple iPhone OS: before 13.4 (fixed in 13.4)

Published 2020-04-01. Last modified 2026-06-17.