First published: Thu Mar 24 2016(Updated: )
The Downloads feature in Apple Safari before 9.1 mishandles file expansion, which allows remote attackers to cause a denial of service via a crafted web site.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mobile Safari | <=9.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1771 has a severity rating of medium due to its exploitation potential for denial of service.
To fix CVE-2016-1771, update Apple Safari to version 9.1 or later.
CVE-2016-1771 affects Apple Safari versions prior to 9.1.
Yes, CVE-2016-1771 can be exploited remotely via a crafted website.
CVE-2016-1771 is a denial of service vulnerability due to mishandled file expansion in Safari.