First published: Mon Mar 27 2017(Updated: )
Keyboards. A buffer overflow was addressed through improved bounds checking.
Credit: Shashank @cyberboyIndia product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <10.3 | 10.3 |
Apple iPhone OS | <=10.2.1 | |
macOS Yosemite | <=10.12.3 | |
tvOS | <=10.1.1 | |
watchOS | <=3.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2017-2458 has a high severity rating due to the buffer overflow vulnerability that can lead to arbitrary code execution.
To fix CVE-2017-2458, update your affected Apple devices to iOS 10.3, macOS 10.12.4, tvOS 10.2, or watchOS 3.2 or later.
CVE-2017-2458 affects iOS versions before 10.3, macOS versions before 10.12.4, tvOS versions before 10.2, and watchOS versions before 3.2.
CVE-2017-2458 is a buffer overflow vulnerability found in the Keyboards component of Apple products.
Yes, CVE-2017-2458 can potentially be exploited remotely through specially crafted input to the affected keyboards on Apple devices.