cbcvebase.
CVE-2017-13873
published 2018-04-03

CVE-2017-13873: An issue was discovered in certain Apple products. iOS before 11 is affected. macOS before 10.13 is affected. tvOS before 11 is affected. watchOS before 4 is…

PriorityP422medium4.3CVSS 3.0
AVNACLPRNUIRSUCLINAN
EPSS
0.34%
56.6th percentile
An issue was discovered in certain Apple products. iOS before 11 is affected. macOS before 10.13 is affected. tvOS before 11 is affected. watchOS before 4 is affected. The issue involves the "Kernel" component. It allows attackers to obtain sensitive network-activity information about arbitrary apps via a crafted app.

Affected

8 ranges
VendorProductVersion rangeFixed in
appleios
appleiphone_os< 11.011.0
applemac_os_x< 10.1310.13
applemacos_high_sierra
appletvos< 11.011.0
appletvos
applewatchos< 4.04.0
applewatchos_4

CVSS provenance

nvdv3.04.3MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N