CVE Database
/

CVE-2017-2390

Back to search

CVE-2017-2390

Published: Apr 2, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves symlink mishandling in the "libarchive" component. It allows local users to change arbitrary directory permissions via unspecified vectors.

VendorProductVersions

n/a

n/a

affected
n/a

References

97137
vdb-entry
x_refsource_BID
1038138
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now