CVE-2016-4643: Infoleak
Published Jan 11, 2019
·Updated
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a validation issue existed in the parsing of 407 responses. This issue was addressed through improved response validation.
Affected Software
3 affected components
Apple Apple TV<9.2.2
Apple iPhone OS<9.3.3
Apple Mac OS>=10.11.0<10.11.6
Event History
Jan 11, 2019
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-4643?
The severity of CVE-2016-4643 is medium with a severity value of 6.5.
2
Which versions of iOS are affected by CVE-2016-4643?
iOS versions before 9.3.3 are affected by CVE-2016-4643.
3
Which versions of tvOS are affected by CVE-2016-4643?
tvOS versions before 9.2.2 are affected by CVE-2016-4643.
4
Which versions of OS X El Capitan are affected by CVE-2016-4643?
OS X El Capitan versions between 10.11.0 and 10.11.6 are affected by CVE-2016-4643.
5
How was the validation issue in CVE-2016-4643 addressed?
The validation issue in CVE-2016-4643 was addressed through improved response validation.