NVD
- Id
- 84300
- Name
- CVE-2017-2423
- Description
- An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. The issue involves the Security component. It allows remote attackers to bypass intended access restrictions by leveraging a successful result from a SecKeyRawVerify API call with an empty signature.
- Reject
- CVSS Version
- 2
- CVSS Score
- 7.5
- Severity
- High
- CVSS Base Score
- 7.5
- CVSS Impact Subscore
- 6.4
- CVSS Exploit Subscore
- 10
- CVSS Vector
- (AV:N/AC:L/Au:N/C:P/I:P/A:P)
- Pub Date
- 2017-07-18
- Published
- 2017-04-01
- Modified Date
- 2017-07-11
- Seq
- 2017-2423