CVE-2017-7000

EUVD-2017-16038
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. The issue involves the "SQLite" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.8 HIGH
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 68%
Affected Products (NVD)
VendorProductVersion
appleiphone_os
𝑥
< 10.3.2
applemac_os_x
𝑥
< 10.12.5
chromiumchromium
𝑥
< 61.0.3163.79
debiandebian_linux
9.0
redhatenterprise_linux_desktop
6.0
redhatenterprise_linux_server
6.0
redhatenterprise_linux_workstation
6.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
chromium-browser
artful
Fixed 61.0.3163.100-0ubuntu1.1378
released
bionic
Fixed 61.0.3163.100-0ubuntu1.1378
released
cosmic
Fixed 61.0.3163.100-0ubuntu1.1378
released
trusty
Fixed 61.0.3163.100-0ubuntu0.14.04.1202
released
xenial
Fixed 61.0.3163.100-0ubuntu0.16.04.1306
released
zesty
Fixed 61.0.3163.100-0ubuntu0.17.04.1377
released
oxide-qt
artful
ignored
bionic
dne
cosmic
dne
trusty
dne
xenial
ignored
zesty
ignored
sqlite
artful
not-affected
bionic
not-affected
cosmic
not-affected
trusty
not-affected
xenial
not-affected
zesty
ignored
sqlite3
artful
not-affected
bionic
not-affected
cosmic
not-affected
trusty
not-affected
xenial
not-affected
zesty
ignored