ID:1382 - Exploit for Use-after-free error in Apple iOS - CVE-2017-13797

 
Main Vulnerability Database Exploits ID:1382 - Exploit for Use-after-free error in Apple iOS - CVE-2017-13797

ID:1382 - Exploit for Use-after-free error in Apple iOS - CVE-2017-13797

Published: March 18, 2020


Vulnerability identifier: #VU9749
Vulnerability risk: High
CVE-ID: CVE-2017-13797
CWE-ID: CWE-416
Exploitation vector: Remote access
Vulnerable software:
Apple iOS

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The weakness exists due to use-after-free error in the WebKit component. A remote attacker can trick the victim into visiting a specially crafted website, trigger memory corruption and execute arbitrary code with elevated privileges.

Remediation

Update to version 11.1.