Vulnerability Description
Wi-Fi in Apple iOS before 10.3.1 does not prevent CVE-2017-6956 stack buffer overflow exploitation via a crafted access point. NOTE: because an operating system could potentially isolate itself from CVE-2017-6956 exploitation without patching Broadcom firmware functions, there is a separate CVE ID for the operating-system behavior.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | Iphone Os | <= 10.3 |
Related Weaknesses (CWE)
References
- http://seclists.org/fulldisclosure/2019/May/24
- http://www.securityfocus.com/bid/97328Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1038172
- https://googleprojectzero.blogspot.com/2017/04/over-air-exploiting-broadcoms-wi-ExploitTechnical DescriptionThird Party Advisory
- https://seclists.org/bugtraq/2019/May/30
- https://support.apple.com/HT207688Vendor Advisory
- https://support.apple.com/kb/HT210121
- https://twitter.com/4Dgifts/status/849268365457850370Third Party Advisory
- http://seclists.org/fulldisclosure/2019/May/24
- http://www.securityfocus.com/bid/97328Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1038172
- https://googleprojectzero.blogspot.com/2017/04/over-air-exploiting-broadcoms-wi-ExploitTechnical DescriptionThird Party Advisory
- https://seclists.org/bugtraq/2019/May/30
- https://support.apple.com/HT207688Vendor Advisory
- https://support.apple.com/kb/HT210121
FAQ
What is CVE-2017-6975?
CVE-2017-6975 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Wi-Fi in Apple iOS before 10.3.1 does not prevent CVE-2017-6956 stack buffer overflow exploitation via a crafted access point. NOTE: because an operating system could potentially isolate itself from ...
How severe is CVE-2017-6975?
CVE-2017-6975 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-6975?
Check the references section above for vendor advisories and patch information. Affected products include: Apple Iphone Os.