CVE-2017-13827

HIGH

Apple <10.13 - Privilege Escalation

Title source: llm
STIX 2.1

Description

An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "kext tools" component. It allows attackers to execute arbitrary code in a privileged context via a crafted app that performs kext loading.

References (1)

Core 1
Core References
Vendor Advisory x_refsource_confirm
https://support.apple.com/HT208144

Scores

CVSS v3 7.8
EPSS 0.0119
EPSS Percentile 64.6%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

Status published
Products (1)
apple/mac_os_x 10.13.0
Published Apr 03, 2018
Tracked Since Feb 18, 2026