CVE-2017-7064: Input Validation
An issue was discovered in certain Apple products. iOS before 10.3.3 is affected. Safari before 10.1.2 is affected. iCloud before 6.2.2 on Windows is affected. iTunes before 12.6.2 on Windows is affected. The issue involves the "WebKit" component. It allows attackers to bypass intended memory-read restrictions via a crafted app.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-7064?
CVE-2017-7064 has been rated as having a high severity due to the potential for attackers to bypass memory-read restrictions.
How do I fix CVE-2017-7064?
To fix CVE-2017-7064, users should update affected Apple software, including iOS, Safari, iCloud, and iTunes to their latest versions.
Which products are affected by CVE-2017-7064?
CVE-2017-7064 affects iOS versions prior to 10.3.3, Safari versions prior to 10.1.2, iCloud for Windows before 6.2.2, and iTunes before 12.6.2.
Can CVE-2017-7064 be exploited remotely?
Yes, CVE-2017-7064 can potentially be exploited remotely, allowing attackers to gain access through vulnerable WebKit components.
What components are involved in CVE-2017-7064?
CVE-2017-7064 involves the WebKit component, which is integral to rendering web content in Apple software.