First published: Mon Mar 27 2017(Updated: )
WebKit. A validation issue existed in the handling of page loading. This issue was addressed through improved logic.
Credit: lokihardt Google Project Zero product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS and iPadOS | <10.3 | 10.3 |
Safari | <=10.0.3 | |
iPhone OS | <=10.2.1 | |
tvOS | <=10.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2017-2367 has been classified as a moderate severity vulnerability affecting multiple Apple products.
To address CVE-2017-2367, update affected Apple products to iOS version 10.3, Safari version 10.1, or tvOS version 10.2.
Devices running iOS prior to version 10.3, Safari prior to 10.1, and tvOS prior to 10.2 are all impacted by CVE-2017-2367.
CVE-2017-2367 involves a validation issue in the handling of page loading within the WebKit component.
There are no specific workarounds for CVE-2017-2367; updating to the latest software version is recommended for protection.