First published: Sat Dec 02 2017(Updated: )
Mail. A S/MIME issue existed in the handling of encrypted email. This issue was addressed through improved selection of the encryption certificate.
Credit: Nicolas Devillard product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <11.2 | 11.2 |
Apple iPhone OS | <11.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2017-13874 is a vulnerability that exists in certain Apple products, specifically iOS before 11.2, which allows remote attackers to bypass encryption protection in the Mail component.
iOS before version 11.2 is affected by CVE-2017-13874.
CVE-2017-13874 has a severity rating of 7.5 (high).
To fix CVE-2017-13874, update your iOS device to version 11.2 or later.
You can find more information about CVE-2017-13874 on the following websites: http://www.securityfocus.com/bid/102097, http://www.securitytracker.com/id/1039953, and https://support.apple.com/HT208334.