PT-2017-2531 · Apple · Apple Macos

Alex Plaskett

+1

·

Published

2017-07-20

·

Updated

2019-05-06

·

CVE-2017-7054

CVSS v3.1

8.0

High

VectorAV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions macOS versions prior to 10.12.6
Description The issue involves the Bluetooth component and allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. This is caused by a buffer overflow in memory.
Recommendations For macOS versions prior to 10.12.6, update to version 10.12.6 or later to resolve the issue. As a temporary workaround, consider disabling the Bluetooth component until a patch is available.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-01741
CVE-2017-7054

Affected Products

Apple Macos