CVE-2016-4606: Critical severity curl vulnerability
Curl before 7.49.1 in Apple OS X before macOS Sierra prior to 10.12 allows remote or local attackers to execute arbitrary code, gain sensitive information, cause denial-of-service conditions, bypass security restrictions, and perform unauthorized actions. This may aid in other attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-4606?
The severity of CVE-2016-4606 is critical with a score of 9.8.
What is CVE-2016-4606?
CVE-2016-4606 is a vulnerability in Apple OS X before macOS Sierra 10.12 that allows remote or local attackers to execute arbitrary code, gain sensitive information, cause denial-of-service conditions, bypass security restrictions, and perform unauthorized actions.
How does CVE-2016-4606 affect Haxx Curl?
CVE-2016-4606 affects Haxx Curl versions up to exclusive 7.49.1, allowing attackers to exploit the vulnerability.
How do I fix CVE-2016-4606?
To fix CVE-2016-4606, update to a version of Apple macOS Sierra 10.12.0 or above.
Where can I find more information about CVE-2016-4606?
More information about CVE-2016-4606 can be found at the following references: [SecurityFocus](http://www.securityfocus.com/bid/93055), [SecurityTracker](http://www.securitytracker.com/id/1036858), [Apple Security Announce](https://lists.apple.com/archives/security-announce/2016/Sep/msg00006.html).