Security Advisory

CVE-2017-2404

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-04-02 01:36:00
Last updated 2026-05-09 03:55:43
Assigner apple
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the "Quick Look" component. It allows remote attackers to trigger telephone calls to arbitrary numbers via a tel: URL in a PDF document, as exploited in the wild in October 2016.