First published: Sun Sep 25 2016(Updated: )
WebKit in Apple iOS before 10, Safari before 10, tvOS before 10, and watchOS before 3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mobile Safari | <10.0 | |
iStyle @cosme iPhone OS | <10.0 | |
tvOS | <=10.0 | |
Apple iOS, iPadOS, and watchOS | <3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4737 has a high severity level due to its potential to allow remote attackers to execute arbitrary code.
To fix CVE-2016-4737, users should update their Apple iOS, Safari, tvOS, or watchOS to the latest available version.
CVE-2016-4737 affects Apple Safari versions before 10, iPhone OS versions before 10, tvOS versions before 10, and watchOS versions before 3.
CVE-2016-4737 impacts devices running Apple iOS, Safari, tvOS, and watchOS prior to their respective versions.
Yes, CVE-2016-4737 can cause denial of service due to memory corruption vulnerabilities.