An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 is affected. tvOS before 11.2 is affected. watchOS before 4.2 is affected. The issue involves the "Kernel" component. It allows attackers to bypass intended memory-read restrictions via a crafted app that triggers type confusion.
References
Link Resource
http://www.securityfocus.com/bid/102100 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1039952 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1039953 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1039966 Third Party Advisory VDB Entry
https://support.apple.com/HT208325 Vendor Advisory
https://support.apple.com/HT208327 Vendor Advisory
https://support.apple.com/HT208331 Vendor Advisory
https://support.apple.com/HT208334 Vendor Advisory
https://www.exploit-db.com/exploits/43318/ Third Party Advisory VDB Entry
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: apple

Published: 2017-12-25T21:00:00

Updated: 2017-12-26T10:57:01

Reserved: 2017-08-30T00:00:00


Link: CVE-2017-13855

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-12-25T21:29:13.950

Modified: 2019-03-08T16:06:35.373


Link: CVE-2017-13855

JSON object: View

cve-icon Redhat Information

No data.

CWE