First published: Tue Sep 19 2017(Updated: )
An issue was discovered in certain Apple products. iOS before 11 is affected. macOS before 10.13 is affected. The issue involves the "Mail Drafts" component. It allows remote attackers to obtain sensitive information by reading unintended cleartext transmissions.
Credit: Petter Flink Pierre ALBARÈDE Marseillean anonymous researcher Petter Flink Pierre ALBARÈDE Marseillean anonymous researcher product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <=10.3.3 | |
Apple Mac OS X | <=10.12.6 | |
Apple iOS | <11 | 11 |
Apple macOS | <10.13 | 10.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID of this issue is CVE-2017-7078.
iOS before 11 and macOS before 10.13 are affected by this vulnerability.
The severity rating of CVE-2017-7078 is medium with a severity value of 5.3.
An attacker can exploit this vulnerability by reading unintended cleartext transmissions in the "Mail Drafts" component.
You can find more information about this vulnerability at the following references: [SecurityFocus](http://www.securityfocus.com/bid/100999), [SecurityTracker](http://www.securitytracker.com/id/1039427), and [Apple Support](https://support.apple.com/HT208112).