bazad/ctl_ctloutput-leak

bazad/ctl_ctloutput-leak

Releases0
Stars28
CVE-2017-13868: Information leak of uninitialized kernel heap data in XNU.

CVE History

CVEPublishedCVSS v3CVSS v2
4.3 MEDIUM

An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 is affected. tvOS before 11.2 is affected. watchOS before 4.2 is affected. The issue involves the "Kernel" component. It allows attackers to bypass intended memory-read restrictions via a crafted app.