Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2017-13861

EPSS 68.49% · P99
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2017-13861

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
An issue was discovered in certain Apple products. iOS before 11.2 is affected. tvOS before 11.2 is affected. watchOS before 4.2 is affected. The issue involves the "IOSurface" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Apple iOS、tvOS和watchOS IOSurface 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Apple iOS、tvOS和watchOS都是美国苹果(Apple)公司的产品。Apple iOS是为移动设备所开发的一套操作系统;tvOS是一套智能电视操作系统;watchOS是一套智能手表操作系统。IOSurface是其中的一个编程框架组件。 Apple iOS 11.2之前的版本、watchOS 4.2之前的版本和tvOS 11.2之前的版本中的IOSurface存在安全漏洞。远程攻击者可借助特制的应用程序利用该漏洞以内核权限执行任意代码或造成拒绝服务(内存损坏)。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2017-13861

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2017-13861

登录查看更多情报信息。

Same Patch Batch · n/a · 2017-12-25 · 40 CVEs total

CVE-2017-7160多款Apple产品WebKit 安全漏洞
CVE-2017-13883Apple macOS High Sierra Intel Graphics Driver 安全漏洞
CVE-2017-13903Apple iOS和tvOS HomeKit 安全漏洞
CVE-2017-7152Apple iOS Mail Message Framework 安全漏洞
CVE-2017-7154Apple iOS、macOS High Sierra和tvOS Kernel 安全漏洞
CVE-2017-7155Apple macOS High Sierra Intel Graphics Driver 安全漏洞
CVE-2017-7156多款Apple产品WebKit 安全漏洞
CVE-2017-7157多款Apple产品WebKit组件安全漏洞
CVE-2017-7158Apple macOS High Sierra Screen Sharing Server 安全漏洞
CVE-2017-7159Apple macOS High Sierra IOAcceleratorFamily 安全漏洞
CVE-2017-13879Apple iOS IOMobileFrameBuffer 安全漏洞
CVE-2017-7162多款Apple产品IOKit 安全漏洞
CVE-2017-7163Apple macOS High Sierra Intel Graphics Driver组件安全漏洞
CVE-2017-17903FS Lynda Clone 跨站请求伪造漏洞
CVE-2017-17904FS Lynda Clone 跨站脚本漏洞
CVE-2017-17905PHP Scripts Mall Car Rental Script 跨站请求伪造漏洞
CVE-2017-17906PHP Scripts Mall Car Rental Script SQL注入漏洞
CVE-2017-17907PHP Scripts Mall Car Rental Script 跨站脚本漏洞
CVE-2017-17908PHP Scripts Mall Responsive Realestate 跨站请求伪造漏洞
CVE-2017-17909PHP Scripts Mall Responsive Realestate Script 跨站脚本漏洞

Showing top 20 of 40 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2017-13861

No comments yet


Leave a comment