CVE-2017-13797: Buffer Overflow
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-13797?
CVE-2017-13797 is considered to be a medium severity vulnerability affecting multiple Apple products.
How do I fix CVE-2017-13797?
To fix CVE-2017-13797, update affected Apple software to the latest versions that contain the security patch.
Which versions of Apple products are affected by CVE-2017-13797?
CVE-2017-13797 affects iOS versions before 11.1, Safari versions before 11.0.1, iCloud for Windows before 7.1, iTunes for Windows before 12.7.1, and tvOS versions before 11.1.
What component is involved in CVE-2017-13797?
The vulnerability CVE-2017-13797 involves the WebKit component used by various Apple applications.
Can CVE-2017-13797 be exploited remotely?
Yes, CVE-2017-13797 allows remote attackers to exploit the vulnerability, potentially leading to unauthorized access or data leakage.