~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2017-7013

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
Candidate: CVE-2017-7013
2
 
PublicDate: 2017-07-20
3
 
References:
4
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-7013
5
 
 http://www.securitytracker.com/id/1038950
6
 
 https://support.apple.com/HT207922
7
 
 https://support.apple.com/HT207923
8
 
 https://support.apple.com/HT207924
9
 
 https://support.apple.com/HT207925
10
 
 https://support.apple.com/HT207927
11
 
 https://support.apple.com/HT207928
12
 
Description:
13
 
 An issue was discovered in certain Apple products. iOS before 10.3.3 is
14
 
 affected. macOS before 10.12.6 is affected. iCloud before 6.2.2 on Windows
15
 
 is affected. iTunes before 12.6.2 on Windows is affected. tvOS before
16
 
 10.2.2 is affected. watchOS before 3.2.3 is affected. The issue involves
17
 
 the "libxml2" component. It allows remote attackers to obtain sensitive
18
 
 information or cause a denial of service (out-of-bounds read and
19
 
 application crash) via a crafted XML file.
20
 
Ubuntu-Description:
21
 
Notes:
22
 
 mdeslaur> possibly apple-specific, no details as of 2017-11-16
23
 
 mdeslaur> marking as not-affected
24
 
Bugs:
25
 
Priority: medium
26
 
Discovered-by:
27
 
Assigned-to:
28
 
 
29
 
Patches_libxml2:
30
 
upstream_libxml2: needs-triage
31
 
precise_libxml2: ignored (reached end-of-life)
32
 
precise/esm_libxml2: not-affected
33
 
trusty_libxml2: not-affected
34
 
vivid/stable-phone-overlay_libxml2: ignored (reached end-of-life)
35
 
vivid/ubuntu-core_libxml2: DNE
36
 
wily_libxml2: ignored (reached end-of-life)
37
 
xenial_libxml2: not-affected
38
 
yakkety_libxml2: ignored (reached end-of-life)
39
 
zesty_libxml2: not-affected
40
 
artful_libxml2: not-affected
41
 
devel_libxml2: not-affected