CVE-2017-13880: Apple iPhone OS

High severity, CVSS 7.8. EPSS: 0.9% chance of exploitation in the next 30 days.

A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 11.2, watchOS 4.2. An application may be able to execute arbitrary code with kernel privilege.

Affected products

  • Apple iPhone OS: before 11.2 (fixed in 11.2)
  • Apple watchOS: before 4.2 (fixed in 4.2)

Published 2021-12-23. Last modified 2026-06-17.