An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the "Quick Look" component. It allows remote attackers to trigger telephone calls to arbitrary numbers via a tel: URL in a PDF document, as exploited in the wild in October 2016.
Metrics
Affected Vendors & Products
References
History
Wed, 06 May 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-601 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2026-05-09T03:55:43.667Z
Reserved: 2016-12-01T00:00:00.000Z
Link: CVE-2017-2404
Updated: 2024-08-05T13:55:04.784Z
Status : Deferred
Published: 2017-04-02T01:59:01.077
Modified: 2026-05-06T15:16:05.070
Link: CVE-2017-2404
No data.
OpenCVE Enrichment
No data.