Vulnerability Name: | CVE-2017-7151 (CCN-163438) | ||||||||||||
Assigned: | 2017-03-17 | ||||||||||||
Published: | 2018-10-18 | ||||||||||||
Updated: | 2019-04-05 | ||||||||||||
Summary: | A race condition was addressed with additional validation. This issue affected versions prior to iOS 11.2, macOS High Sierra 10.13.2, tvOS 11.2, watchOS 4.2, iTunes 12.7.2 for Windows, macOS High Sierra 10.13.4. | ||||||||||||
CVSS v3 Severity: | 7.0 High (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H) 6.1 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
6.8 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
| ||||||||||||
CVSS v2 Severity: | 5.1 Medium (CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P)
| ||||||||||||
Vulnerability Type: | CWE-362 | ||||||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2017-7151 Source: XF Type: UNKNOWN apple-cve20177151-priv-esc(163438) Source: CCN Type: Apple security document HT208325 About the security content of watchOS 4.2 Source: MISC Type: Vendor Advisory https://support.apple.com/kb/HT208325 Source: CCN Type: Apple security document HT208326 About the security content of iTunes 12.7.2 for Windows Source: MISC Type: Vendor Advisory https://support.apple.com/kb/HT208326 Source: MISC Type: Vendor Advisory https://support.apple.com/kb/HT208327 Source: MISC Type: Vendor Advisory https://support.apple.com/kb/HT208331 Source: MISC Type: Vendor Advisory https://support.apple.com/kb/HT208334 Source: MISC Type: Vendor Advisory https://support.apple.com/kb/HT208692 Source: CCN Type: Apple security document HT208327 About the security content of itvOS 11.2 Source: CCN Type: Apple security document HT208331 About the security content of macOS High Sierra 10.13.2 Source: CCN Type: Apple security document HT208334 About the security content of iOS 11.2 Source: CCN Type: Apple security document HT208692 About the security content of macOS High Sierra 10.13.4 | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: ![]() | ||||||||||||
BACK |