CVE-2017-6996: Buffer Overflow
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. tvOS before 10.2.1 is affected. watchOS before 3.2.2 is affected. The issue involves the "AVEVideoEncoder" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-6996?
CVE-2017-6996 is considered a high severity vulnerability due to its potential to allow arbitrary code execution in a privileged context.
How do I fix CVE-2017-6996?
To fix CVE-2017-6996, update your affected Apple devices to the latest versions of iOS, tvOS, or watchOS that are not vulnerable.
Which Apple products are affected by CVE-2017-6996?
CVE-2017-6996 affects iOS versions prior to 10.3.2, tvOS versions before 10.2.1, and watchOS versions before 3.2.2.
What components are involved in CVE-2017-6996?
The vulnerability is associated with the "AVEVideoEncoder" component in affected Apple software products.
What can attackers achieve with CVE-2017-6996?
Attackers can exploit CVE-2017-6996 to execute arbitrary code or cause a denial of service on vulnerable devices.