First published: Sat Dec 02 2017(Updated: )
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 11.2, watchOS 4.2. An application may be able to execute arbitrary code with kernel privilege.
Credit: Apple Apple product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <11.2 | |
Apple watchOS | <4.2 | |
Apple iOS | <11.2 | 11.2 |
Apple watchOS | <4.2 | 4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2017-13880 is a memory corruption issue in the kernel of iOS and watchOS that allows an application to execute arbitrary code with kernel privilege.
CVE-2017-13880 affects Apple devices running iOS up to version 11.2 and watchOS up to version 4.2.
CVE-2017-13880 has a severity score of 7.8, which is considered critical.
To fix CVE-2017-13880, you need to update your iOS device to version 11.2 or later and your watchOS device to version 4.2 or later.
You can find more information about CVE-2017-13880 on Apple's support page: [link](https://support.apple.com/en-us/HT208325)