CVE-2016-4655: Apple iOS Information Disclosure Vulnerability
Published Aug 25, 2016
·Updated
The kernel in Apple iOS before 9.3.5 allows attackers to obtain sensitive information from memory via a crafted app.
Other sources
The Apple iOS kernel allows attackers to obtain sensitive information from memory via a crafted application.
— CISA
Affected Software
4 affected components
Apple iOS and iPadOS
iPhone OS<9.3.5
iPhone OS=10.0
iPhone OS<=9.3.4
Event History
Aug 25, 2016
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Data Sourced
via NVD·09:59 PM
DescriptionSeverityAffected Software
May 24, 2022
Known Exploited
via CISA·12:00 AM
Mar 1, 58274
Event
via NVD·03:01 PM
Frequently Asked Questions
1
What is the severity of CVE-2016-4655?
CVE-2016-4655 is considered a medium severity vulnerability due to its potential to expose sensitive information.
2
How do I fix CVE-2016-4655?
To fix CVE-2016-4655, update your iOS device to version 9.3.5 or later.
3
What versions of iOS are affected by CVE-2016-4655?
CVE-2016-4655 affects all versions of Apple iOS prior to 9.3.5 and includes iOS 10.0.
4
What type of attack does CVE-2016-4655 enable?
CVE-2016-4655 allows attackers to obtain sensitive information from memory through a crafted application.
5
Is CVE-2016-4655 specific to any Apple devices?
CVE-2016-4655 can affect any Apple device running vulnerable versions of iOS, including iPhones and iPads.