Medium severity5.3NVD Advisory· Published Apr 2, 2017· Updated May 13, 2026
CVE-2017-2391
CVE-2017-2391
Description
An issue was discovered in certain Apple products. Pages before 6.1, Numbers before 4.1, and Keynote before 7.1 on macOS and Pages before 3.1, Numbers before 3.1, and Keynote before 3.1 on iOS are affected. The issue involves the "Export" component. It allows users to bypass iWork PDF password protection by leveraging use of 40-bit RC4.
Affected products
6cpe:2.3:a:apple:keynote:*:*:*:*:*:iphone_os:*:*+ 1 more
- cpe:2.3:a:apple:keynote:*:*:*:*:*:iphone_os:*:*range: <=3.0.5
- cpe:2.3:a:apple:keynote:*:*:*:*:*:mac_os_x:*:*range: <=7.0.5
cpe:2.3:a:apple:numbers:*:*:*:*:*:iphone_os:*:*+ 1 more
- cpe:2.3:a:apple:numbers:*:*:*:*:*:iphone_os:*:*range: <=3.0.5
- cpe:2.3:a:apple:numbers:*:*:*:*:*:mac_os_x:*:*range: <=4.0.5
cpe:2.3:a:apple:pages:*:*:*:*:*:iphone_os:*:*+ 1 more
- cpe:2.3:a:apple:pages:*:*:*:*:*:iphone_os:*:*range: <=3.0.5
- cpe:2.3:a:apple:pages:*:*:*:*:*:mac_os_x:*:*range: <=6.0.5
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- www.securityfocus.com/bid/97126nvdThird Party AdvisoryVDB Entry
- support.apple.com/HT207595nvdVendor Advisory
- www.securitytracker.com/id/1038134nvd
- www.securitytracker.com/id/1038135nvd
- www.securitytracker.com/id/1038136nvd
News mentions
0No linked articles in our index yet.