PT-2017-3074 · Apple · Tvos+1

Gal Beniamini

·

Published

2017-07-03

·

Updated

2019-03-08

·

CVE-2017-7115

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions iOS versions prior to 11 tvOS versions prior to 11
Description The issue involves the Wi-Fi component and might allow remote attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via crafted Wi-Fi traffic that leverages a race condition. This is caused by synchronization errors when using a shared resource.
Recommendations For iOS versions prior to 11, update to version 11 or later to resolve the issue. For tvOS versions prior to 11, update to version 11 or later to resolve the issue.

Exploit

Fix

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-02444
CVE-2017-7115

Affected Products

Ios
Tvos