PT-2018-8364 · Apple · Ios

Richard Will

·

Published

2018-04-03

·

Updated

2018-05-03

·

CVE-2017-7075

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions iOS versions prior to 11
Description An issue in certain Apple products allows local users to obtain sensitive information. The issue involves the Notes component, where users can read search results containing locked-note content, thus gaining access to sensitive information.
Recommendations For iOS versions prior to 11, update to a version 11 or later to resolve the issue. As a temporary workaround, consider restricting access to the Notes component to minimize the risk of exploitation.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-7075

Affected Products

Ios