HIGH
An issue was discovered in certain Apple products
Published Apr 2, 2017
7.0
HIGHCVSS 3.0
EPSS 4.75%
Description
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves the "Kernel" component. A race condition allows attackers to execute arbitrary code in a privileged context via a crafted app.
Affected products
Remediation
No remediation recorded yet.
Weaknesses (1)
References (7)
- http://www.securityfocus.com/bid/97137 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1038138 vdb-entryx_refsource_SECTRACK
- https://support.apple.com/HT207601 x_refsource_CONFIRMVendor Advisory
- https://support.apple.com/HT207602 x_refsource_CONFIRMVendor Advisory
- https://support.apple.com/HT207615 x_refsource_CONFIRMVendor Advisory
- https://support.apple.com/HT207617 x_refsource_CONFIRMVendor Advisory
- https://www.exploit-db.com/exploits/41794/ exploitx_refsource_EXPLOIT-DB
| Link | Providers | Tags |
|---|---|---|
| http://www.securityfocus.com/bid/97137 | vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry | |
| http://www.securitytracker.com/id/1038138 | vdb-entryx_refsource_SECTRACK | |
| https://support.apple.com/HT207601 | x_refsource_CONFIRMVendor Advisory | |
| https://support.apple.com/HT207602 | x_refsource_CONFIRMVendor Advisory | |
| https://support.apple.com/HT207615 | x_refsource_CONFIRMVendor Advisory | |
| https://support.apple.com/HT207617 | x_refsource_CONFIRMVendor Advisory | |
| https://www.exploit-db.com/exploits/41794/ | exploitx_refsource_EXPLOIT-DB |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner apple
Published Apr 2, 2017
Updated Aug 5, 2024
Reserved Dec 1, 2016
Link CVE-2017-2478
CISA Vulnrichment
Updated n/a