First published: Mon Sep 25 2017(Updated: )
An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "Directory Utility" component. It allows local users to discover the Apple ID of the computer's owner.
Credit: product-security@apple.com Daniel Kvak Masaryk University
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mac OS X | <=10.12.6 | |
Apple macOS High Sierra | <10.13 | 10.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this issue is CVE-2017-7138.
This vulnerability affects macOS before 10.13 (Apple Mac OS X) and macOS High Sierra (up to version 10.13).
The severity of CVE-2017-7138 is low with a CVSS score of 3.3.
The issue allows local users to discover the Apple ID of the computer's owner.
To fix CVE-2017-7138, update to macOS 10.13 or later.