ID:1197 - Exploit for Memory corruption in Apple iOS - CVE-2017-6979

 
Main Vulnerability Database Exploits ID:1197 - Exploit for Memory corruption in Apple iOS - CVE-2017-6979

ID:1197 - Exploit for Memory corruption in Apple iOS - CVE-2017-6979

Published: March 18, 2020


Vulnerability identifier: #VU6587
Vulnerability risk: Low
CVE-ID: CVE-2017-6979
CWE-ID: CWE-119
Exploitation vector: Remote access
Vulnerable software:
Apple iOS

Link to public exploit:


Vulnerability description

The vulnerability allows a local attacker to gain elevated privileges.

The vulnerability exists due to boundary error in the IOSurface component when parsing malicious content. A local attacker can run a specially crafted application to gain kernel privileges.

Successful exploitation of the vulnerability results in full access to the system.


Remediation

Update to version 10.3.2.