An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the "Quick Look" component. It allows remote attackers to trigger telephone calls to arbitrary numbers via a tel: URL in a PDF document, as exploited in the wild in October 2016.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-11587 | An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the "Quick Look" component. It allows remote attackers to trigger telephone calls to arbitrary numbers via a tel: URL in a PDF document, as exploited in the wild in October 2016. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 06 May 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-601 | |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2026-05-09T03:55:43.667Z
Reserved: 2016-12-01T00:00:00.000Z
Link: CVE-2017-2404
Updated: 2024-08-05T13:55:04.784Z
Status : Modified
Published: 2017-04-02T01:59:01.077
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-2404
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD