CVE-2017-6999: Buffer Overflow
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. tvOS before 10.2.1 is affected. watchOS before 3.2.2 is affected. The issue involves the "AVEVideoEncoder" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
Affected Software
Event History
Frequently Asked Questions
What versions are affected by CVE-2017-6999?
CVE-2017-6999 affects iOS versions prior to 10.3.2, tvOS versions prior to 10.2.1, and watchOS versions prior to 3.2.2.
What type of vulnerability is CVE-2017-6999?
CVE-2017-6999 is a vulnerability that allows attackers to execute arbitrary code in a privileged context or to cause a denial of service.
What component is involved in CVE-2017-6999?
The vulnerability CVE-2017-6999 involves the 'AVEVideoEncoder' component.
What are the consequences of exploiting CVE-2017-6999?
Exploiting CVE-2017-6999 can lead to arbitrary code execution or a denial of service on affected Apple devices.
How can I mitigate the risks of CVE-2017-6999?
To mitigate the risks of CVE-2017-6999, update affected devices to the latest versions of iOS, tvOS, or watchOS.