Apple iOS
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*
- >= 17.0, < 17.4
This vulnerability is being actively exploited in the wild.
A memory corruption vulnerability has been identified in the RTKit component of multiple Apple operating systems, including iOS, iPadOS, macOS, tvOS, and watchOS. This vulnerability allows an attacker with arbitrary kernel read and write capabilities to bypass kernel memory protections. The issue has been addressed with improved validation. Notably, there are reports suggesting that this vulnerability may have been exploited in the wild.
Exploitation of this vulnerability can lead to unauthorized access to kernel memory, allowing for potential manipulation of kernel operations or data.
Users can update to the latest versions of the affected operating systems to address this vulnerability. Instructions for updating are available on the Apple Support website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.