CVE-2017-7070

MEDIUM

Apple <10.12.4 - Privilege Escalation

Title source: llm
STIX 2.1

Description

An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "Kernel" component. It allows physically proximate attackers to bypass the screen-locking protection mechanism that should have been in place upon closing the lid.

References (1)

Core 1
Core References
Vendor Advisory x_refsource_confirm
https://support.apple.com/HT207615

Scores

CVSS v3 6.8
EPSS 0.0030
EPSS Percentile 22.0%
Attack Vector PHYSICAL
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (1)
apple/mac_os_x < 10.12.4
Published Apr 03, 2018
Tracked Since Feb 18, 2026