First published: Mon May 22 2017(Updated: )
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. The issue involves the "SQLite" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <=10.3.1 | |
macOS Yosemite | <=10.12.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-6991 has been classified as a high severity vulnerability due to its potential to allow remote code execution.
To fix CVE-2017-6991, users should update their iOS to version 10.3.2 or later and macOS to version 10.12.5 or later.
CVE-2017-6991 affects users of iOS versions prior to 10.3.2 and macOS versions prior to 10.12.5.
The vulnerability in CVE-2017-6991 involves the SQLite component of the affected Apple products.
An attacker exploiting CVE-2017-6991 can execute arbitrary code or cause a denial of service, leading to memory corruption and application crashes.