CVE-2017-7139 is a low-severity information disclosure vulnerability affecting Apple iOS before version 11, specifically within the Phone component. Attackers could exploit a timing bug during a device locking action to read a secure-content screenshot, potentially revealing sensitive information. The attack requires physical proximity (AV:P) and has low impact on confidentiality (C:L). There is no known public exploit code, active exploitation, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 10.3.3CPE matchmatch criteria | cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.0 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.