PT-2017-17510 · Apple · Ios
Jun Hao Tan
+1
·
Published
2017-10-23
·
Updated
2017-10-25
·
CVE-2017-7097
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Apple iOS versions prior to 11
Description
The issue involves the
Mail MessageUI component and allows attackers to cause a denial of service (memory corruption) via a crafted image.Recommendations
For versions prior to 11, update to a version 11 or later to resolve the issue. As a temporary workaround, consider restricting the handling of crafted images in the
Mail MessageUI component until a patch is available.Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ios