An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves symlink mishandling in the "libarchive" component. It allows local users to change arbitrary directory permissions via unspecified vectors.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: apple
Published: 2017-04-02T01:36:00
Updated: 2024-08-05T13:55:05.179Z
Reserved: 2016-12-01T00:00:00
Link: CVE-2017-2390
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-04-02T01:59:00.637
Modified: 2024-11-21T03:23:25.837
Link: CVE-2017-2390
Redhat
No data.