CVE-2017-6995: Buffer Overflow
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. tvOS before 10.2.1 is affected. watchOS before 3.2.2 is affected. The issue involves the "AVEVideoEncoder" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-6995?
CVE-2017-6995 has a high severity rating due to its potential to allow arbitrary code execution and denial of service.
How do I fix CVE-2017-6995?
To mitigate CVE-2017-6995, update your affected Apple device to the latest version of iOS, tvOS, or watchOS.
Which devices are affected by CVE-2017-6995?
CVE-2017-6995 affects iOS versions prior to 10.3.2, tvOS versions prior to 10.2.1, and watchOS versions prior to 3.2.2.
Can CVE-2017-6995 lead to data loss?
Yes, exploitation of CVE-2017-6995 may result in data loss or corruption in the affected Apple devices.
What component is involved in CVE-2017-6995?
CVE-2017-6995 involves the "AVEVideoEncoder" component in the affected Apple products.