First published: Tue Sep 19 2017(Updated: )
Profiles. Pairings were not removed when a profile disallowing pairings was installed. This was addressed by removing pairings conflicting with the configuration profile.
Credit: Rorie Hood MWR InfoSecurity product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <11 | 11 |
Apple iPhone OS | <11.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this issue is CVE-2017-13806.
This vulnerability affects certain Apple products, specifically iOS before version 11.
The "Profiles" component of the affected products is involved in this vulnerability.
No, this vulnerability does not enforce the configuration profile's settings for whether pairings are allowed.
The severity of this vulnerability is medium, with a severity value of 5.5.
Yes, Apple has provided a remediation for this vulnerability. More information can be found in the references provided.