CVE-2017-6994: Buffer Overflow
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. tvOS before 10.2.1 is affected. watchOS before 3.2.2 is affected. The issue involves the "AVEVideoEncoder" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-6994?
CVE-2017-6994 is considered a high severity vulnerability that allows arbitrary code execution in a privileged context.
How do I fix CVE-2017-6994?
To fix CVE-2017-6994, update your device to iOS version 10.3.2, tvOS version 10.2.1, or watchOS version 3.2.2 or later.
What systems are affected by CVE-2017-6994?
CVE-2017-6994 affects iOS versions prior to 10.3.2, tvOS versions prior to 10.2.1, and watchOS versions prior to 3.2.2.
Can CVE-2017-6994 lead to data breaches?
Yes, CVE-2017-6994 can potentially lead to data breaches due to arbitrary code execution capabilities.
Is there a workaround for CVE-2017-6994?
There is no known workaround for CVE-2017-6994; the best approach is to update the affected software as soon as possible.