First published: Mon Feb 20 2017(Updated: )
An issue was discovered in certain Apple products. iOS before 10.1 is affected. tvOS before 10.0.1 is affected. watchOS before 3.1 is affected. The issue involves the "Sandbox Profiles" component, which allows attackers to read audio-recording metadata via a crafted app.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <=10.0.3 | |
watchOS | <=2.2.2 | |
tvOS | <=10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4665 has a severity rating that indicates it is a significant security issue due to its potential to allow unauthorized access to audio-recording metadata.
To fix CVE-2016-4665, users should update their affected Apple devices to the latest versions of iOS, tvOS, or watchOS that address the vulnerability.
CVE-2016-4665 affects iOS before version 10.1, tvOS before 10.0.1, and watchOS before 3.1.
CVE-2016-4665 is a vulnerability related to the 'Sandbox Profiles' component that can expose audio-recording metadata.
Yes, attackers could exploit CVE-2016-4665 by using a specially crafted app to read audio-recording metadata.