CRITICAL
An issue was discovered in certain Apple products
Published May 22, 2017
9.8
CRITICALCVSS 3.0
EPSS 3.95%
Description
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS before 10.2.1 is affected. watchOS before 3.2.2 is affected. The issue involves the "SQLite" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted SQL statement.
Affected products
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (8)
- http://www.securityfocus.com/bid/98468 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1038484 vdb-entryx_refsource_SECTRACKThird Party AdvisoryVDB Entry
- https://lists.debian.org/debian-lts-announce/2019/01/msg00009.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://support.apple.com/HT207797 x_refsource_CONFIRMVendor Advisory
- https://support.apple.com/HT207798 x_refsource_CONFIRMVendor Advisory
- https://support.apple.com/HT207800 x_refsource_CONFIRMVendor Advisory
- https://support.apple.com/HT207801 x_refsource_CONFIRMVendor Advisory
- https://usn.ubuntu.com/4019-1/ vendor-advisoryx_refsource_UBUNTU
| Link | Providers | Tags |
|---|---|---|
| http://www.securityfocus.com/bid/98468 | vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry | |
| http://www.securitytracker.com/id/1038484 | vdb-entryx_refsource_SECTRACKThird Party AdvisoryVDB Entry | |
| https://lists.debian.org/debian-lts-announce/2019/01/msg00009.html | mailing-listx_refsource_MLISTMailing ListThird Party Advisory | |
| https://support.apple.com/HT207797 | x_refsource_CONFIRMVendor Advisory | |
| https://support.apple.com/HT207798 | x_refsource_CONFIRMVendor Advisory | |
| https://support.apple.com/HT207800 | x_refsource_CONFIRMVendor Advisory | |
| https://support.apple.com/HT207801 | x_refsource_CONFIRMVendor Advisory | |
| https://usn.ubuntu.com/4019-1/ | vendor-advisoryx_refsource_UBUNTU |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner apple
Published May 22, 2017
Updated Aug 5, 2024
Reserved Dec 1, 2016
Link CVE-2017-2519
CISA Vulnrichment
Updated n/a