First published: Tue Sep 19 2017(Updated: )
Keyboard Suggestions. The iOS keyboard was inadvertently caching sensitive information. This issue was addressed with improved heuristics.
Credit: Agim Allkanjari Stream in Motion Inc product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <=10.3.3 | |
Apple iOS | <11 | 11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability CVE-2017-7140 is an issue in certain Apple products where the iOS keyboard caches sensitive information and allows attackers to obtain it by reading keyboard autocorrect suggestions.
The iOS before version 11 is affected by vulnerability CVE-2017-7140.
The severity of vulnerability CVE-2017-7140 is medium with a CVSS score of 5.3.
To fix vulnerability CVE-2017-7140, it is recommended to update to a version of iOS that is equal to or newer than version 11.
You can find more information about vulnerability CVE-2017-7140 on the following resources: [link1](http://www.securityfocus.com/bid/101000), [link2](https://support.apple.com/HT208112), [link3](https://support.apple.com/en-us/HT208112).