CVE-2016-4691: Buffer Overflow
An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchOS before 3.1.3 is affected. The issue involves the "FontParser" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted font.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-4691?
CVE-2016-4691 is considered a critical vulnerability that allows attackers to execute arbitrary code on affected Apple devices.
How do I fix CVE-2016-4691?
To fix CVE-2016-4691, users need to update their devices to the latest versions of iOS, macOS, or watchOS provided by Apple.
Which products are affected by CVE-2016-4691?
CVE-2016-4691 affects iOS versions prior to 10.2, macOS versions prior to 10.12.2, and watchOS versions prior to 3.1.3.
What component is involved in CVE-2016-4691?
The vulnerability arises from the "FontParser" component in the affected Apple operating systems.
Can CVE-2016-4691 lead to denial of service?
Yes, CVE-2016-4691 can cause a denial of service due to memory corruption in the vulnerable components.