First published: Sun Apr 02 2017(Updated: )
An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "Intel Graphics Driver" component. It allows attackers to obtain sensitive information from kernel memory via a crafted app.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | <=10.12.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-2489 has a high severity rating, indicating a significant risk to affected systems.
To mitigate CVE-2017-2489, upgrade to macOS version 10.12.4 or later.
CVE-2017-2489 affects macOS versions prior to 10.12.4, specifically those vulnerable under the Intel Graphics Driver component.
CVE-2017-2489 allows attackers to obtain sensitive information from kernel memory via a crafted application.
CVE-2017-2489 requires local access to exploit, as it relies on a crafted app to access the vulnerable component.