CVE-2017-2474
HIGHiPhone OS < 10.3, macOS < 10.12.4, tvOS < 10.2, watchOS < 3.2 - Kernel Off-by-One Remote Code Execution
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-2474. PoCs published by Google Security Research.
AI-analyzed exploit summary This PoC exploits an off-by-one vulnerability in the MacOS/iOS kernel's SIOCGIFORDER ioctl handler, leading to a kernel memory corruption. It demonstrates the bug by setting a list of 5 interfaces and then requesting 4, causing an out-of-bounds write.
Description
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves the "Kernel" component. An off-by-one error allows attackers to execute arbitrary code in a privileged context via a crafted app.
Exploits (1)
This PoC exploits an off-by-one vulnerability in the MacOS/iOS kernel's SIOCGIFORDER ioctl handler, leading to a kernel memory corruption. It demonstrates the bug by setting a list of 5 interfaces and then requesting 4, causing an out-of-bounds write.
References (7)
Scores
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H