An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the "Quick Look" component. It allows remote attackers to trigger telephone calls to arbitrary numbers via a tel: URL in a PDF document, as exploited in the wild in October 2016.
Metrics
Affected Vendors & Products
References
History
Wed, 06 May 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-601 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: apple
Published: 2017-04-02T01:36:00.000Z
Updated: 2026-05-09T03:55:43.667Z
Reserved: 2016-12-01T00:00:00.000Z
Link: CVE-2017-2404
Updated: 2024-08-05T13:55:04.784Z
Status : Modified
Published: 2017-04-02T01:59:01.077
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-2404
No data.