PT-2017-2535 · Apple · Apple Macos

Min (Spark) Zheng

·

Published

2017-07-20

·

Updated

2019-05-06

·

CVE-2017-7050

CVSS v3.1

8.0

High

VectorAV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions macOS versions prior to 10.12.6
Description The issue involves the Bluetooth component and allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. This is caused by a buffer overflow in memory.
Recommendations For macOS versions prior to 10.12.6, update to version 10.12.6 or later to resolve the issue. As a temporary workaround, consider disabling the Bluetooth component until a patch is available.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-01745
CVE-2017-7050

Affected Products

Apple Macos