Medium severity5.9NVD Advisory· Published Dec 25, 2017· Updated Jun 17, 2026
CVE-2017-13864
CVE-2017-13864
Description
An issue was discovered in certain Apple products. iCloud before 7.2 on Windows is affected. iTunes before 12.7.2 on Windows is affected. The issue involves the "APNs Server" component. It allows man-in-the-middle attackers to track users by leveraging mishandling of client certificates.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:apple:icloud:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:apple:icloud:*:*:*:*:*:*:*:*range: <7.2
- (no CPE)range: <7.2
cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:*range: <12.7.2
- (no CPE)range: <12.7.2
Patches
Vulnerability mechanics
References
4- www.securityfocus.com/bid/102192nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1040013nvdThird Party AdvisoryVDB Entry
- support.apple.com/HT208326nvdVendor Advisory
- support.apple.com/HT208328nvdVendor Advisory
News mentions
0No linked articles in our index yet.