First published: Mon May 22 2017(Updated: )
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. The issue involves the "iBooks" component. It allows attackers to execute arbitrary code in a privileged context via a crafted app that uses symlinks.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
iStyle @cosme iPhone OS | <=10.3.1 | |
Apple iOS and macOS | <=10.12.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-6981 has been rated as a high severity vulnerability due to its potential for arbitrary code execution.
To fix CVE-2017-6981, update iOS to version 10.3.2 or later and macOS to version 10.12.5 or later.
CVE-2017-6981 affects iOS versions before 10.3.2 and macOS versions before 10.12.5.
CVE-2017-6981 is a vulnerability that allows attackers to execute arbitrary code in a privileged context.
There are no specific workarounds for CVE-2017-6981; the best mitigation is to install the latest software updates.