HIGH
An issue was discovered in certain Apple products
Published Nov 13, 2017
8.8
HIGHCVSS 3.0
EPSS 5.79%
Description
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
Affected products
No data.
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (9)
- http://www.securitytracker.com/id/1039703 vdb-entryx_refsource_SECTRACKThird Party AdvisoryVDB Entry
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2017-5317 Advisory
- https://security.gentoo.org/glsa/201712-01 vendor-advisoryx_refsource_GENTOOThird Party Advisory
- https://support.apple.com/HT208219 x_refsource_CONFIRMVendor Advisory
- https://support.apple.com/HT208222 x_refsource_CONFIRMVendor Advisory
- https://support.apple.com/HT208223 x_refsource_CONFIRMVendor Advisory
- https://support.apple.com/HT208224 x_refsource_CONFIRMVendor Advisory
- https://support.apple.com/HT208225 x_refsource_CONFIRMVendor Advisory
- https://www.exploit-db.com/exploits/43173/ exploitx_refsource_EXPLOIT-DBThird Party AdvisoryVDB Entry
| Link | Providers | Tags |
|---|---|---|
| http://www.securitytracker.com/id/1039703 | vdb-entryx_refsource_SECTRACKThird Party AdvisoryVDB Entry | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2017-5317 | Advisory | |
| https://security.gentoo.org/glsa/201712-01 | vendor-advisoryx_refsource_GENTOOThird Party Advisory | |
| https://support.apple.com/HT208219 | x_refsource_CONFIRMVendor Advisory | |
| https://support.apple.com/HT208222 | x_refsource_CONFIRMVendor Advisory | |
| https://support.apple.com/HT208223 | x_refsource_CONFIRMVendor Advisory | |
| https://support.apple.com/HT208224 | x_refsource_CONFIRMVendor Advisory | |
| https://support.apple.com/HT208225 | x_refsource_CONFIRMVendor Advisory | |
| https://www.exploit-db.com/exploits/43173/ | exploitx_refsource_EXPLOIT-DBThird Party AdvisoryVDB Entry |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner apple
Published Nov 13, 2017
Updated Aug 5, 2024
Reserved Aug 30, 2017
Link CVE-2017-13802
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2017-5317 Assigner apple
Published Nov 13, 2017
Updated Aug 5, 2024
Exploited since n/a
Link EUVD-2017-5317