CVE-2017-2410: Input Validation
Published Apr 2, 2017
·Updated
An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "Kernel" component. It allows attackers to execute arbitrary code in a privileged context via a crafted app.
Affected Software
1 affected component
Apple iOS and macOS<=10.12.3
Event History
Apr 2, 2017
CVE Published
via MITRE·01:36 AM
Data Sourced
via MITRE·01:36 AM
Description
Data Sourced
via NVD·01:59 AM
DescriptionSeverityWeaknessAffected Software
Jun 13, 58461
Event
07:01 PM
Frequently Asked Questions
1
What is the severity of CVE-2017-2410?
CVE-2017-2410 is classified as a high severity vulnerability due to the potential for arbitrary code execution in a privileged context.
2
How do I fix CVE-2017-2410?
To fix CVE-2017-2410, users should update their macOS to version 10.12.4 or later.
3
What type of attack is associated with CVE-2017-2410?
CVE-2017-2410 allows attackers to execute arbitrary code through a crafted application targeting macOS.
4
Which macOS versions are affected by CVE-2017-2410?
CVE-2017-2410 affects macOS versions prior to 10.12.4, specifically up to 10.12.3.
5
What component is vulnerable in CVE-2017-2410?
The vulnerability in CVE-2017-2410 involves the Kernel component of macOS.