First published: Wed Dec 06 2017(Updated: )
Intel Graphics Driver. An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed through improved input validation.
Credit: Ian Beer Google Project Zero product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mac OS X | <10.13.2 | |
Apple macOS High Sierra | <10.13.2 | 10.13.2 |
Apple Sierra | ||
Apple El Capitan |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2017-13878 is a vulnerability in the Intel Graphics Driver component that allows local users to bypass memory-read restrictions or cause a denial of service on certain Apple products running macOS before version 10.13.2.
The severity of CVE-2017-13878 is rated as high with a score of 7.1.
macOS versions before 10.13.2 are affected by CVE-2017-13878.
This vulnerability can be exploited by local users to bypass memory-read restrictions or cause a denial of service.
Yes, updating macOS to version 10.13.2 or later fixes CVE-2017-13878.