First published: Mon Feb 01 2016(Updated: )
The IOHIDFamily API in Apple iOS before 9.2.1, OS X before 10.11.3, and tvOS before 9.1.1 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
iPhone OS | <=9.2 | |
Apple iOS and macOS | <=10.11.2 | |
tvOS | <=9.1 | |
Apple iOS, iPadOS, and watchOS | <=2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1719 is considered a medium severity vulnerability that can lead to privilege escalation or denial of service.
To fix CVE-2016-1719, update your Apple device to iOS 9.2.1, macOS 10.11.3, tvOS 9.1.1, or later versions.
CVE-2016-1719 affects Apple iOS versions up to 9.2, macOS versions up to 10.11.2, tvOS versions up to 9.1, and watchOS versions up to 2.1.
CVE-2016-1719 can be exploited to gain elevated privileges or induce memory corruption leading to a denial of service.
CVE-2016-1719 can be exploited by local users, which means an attacker must have physical or local access to the vulnerable device.