First published: Mon Feb 20 2017(Updated: )
An issue was discovered in certain Apple products. macOS before 10.12 is affected. macOS before 10.12.1 is affected. The issue involves the "ImageIO" component. It allows remote attackers to obtain sensitive information or cause a denial of service (out-of-bounds read and application crash) via a crafted SGI file.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | <=10.12.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4682 is classified as having a low severity impact, primarily allowing for denial of service or information disclosure.
CVE-2016-4682 affects macOS versions prior to 10.12.1.
To mitigate CVE-2016-4682, users should update their macOS to version 10.12.1 or later.
CVE-2016-4682 involves the ImageIO component of macOS.
CVE-2016-4682 allows remote attackers to cause application crashes or access sensitive information.