First published: Mon Jan 23 2017(Updated: )
WebKit. A validation issue existed in the handling of page loading. This issue was addressed through improved logic.
Credit: product-security@apple.com lokihardt Google Project Zero
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS, iPadOS, and watchOS | <10.2.1 | 10.2.1 |
iStyle @cosme iPhone OS | <10.2.1 | |
Apple Mobile Safari | <10.0.3 | |
tvOS | <10.1.1 | |
Apple iOS, iPadOS, and watchOS | <3.1.3 | |
WebKitGTK+ | <2.16.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2017-2363 is classified as a high severity vulnerability.
To mitigate CVE-2017-2363, update your affected Apple devices to iOS 10.2.1, Safari 10.0.3, tvOS 10.1.1, watchOS 3.1.3, or WebKitGTK+ 2.16.3 or later.
CVE-2017-2363 affects iOS devices prior to version 10.2.1, Safari before 10.0.3, tvOS before 10.1.1, and watchOS before 3.1.3.
CVE-2017-2363 involves a validation issue in the handling of page loading within WebKit.
As of now, there are no publicly available exploits specifically targeting CVE-2017-2363.