First published: Mon May 22 2017(Updated: )
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. The issue involves the "iBooks" component. It allows remote attackers to trigger visits to arbitrary URLs via a crafted book.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
iStyle @cosme iPhone OS | <=10.3.1 | |
Apple iOS and macOS | <=10.12.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-2497 is considered to be of moderate severity due to its potential to allow arbitrary URL visits.
To fix CVE-2017-2497, users should update to iOS version 10.3.2 or later and macOS version 10.12.5 or later.
CVE-2017-2497 affects the iBooks component in iOS and macOS systems.
CVE-2017-2497 impacts iOS versions prior to 10.3.2.
CVE-2017-2497 impacts macOS versions prior to 10.12.5.