First published: Sun Sep 25 2016(Updated: )
ServerDocs Server in Apple OS X Server before 5.2 supports the RC4 cipher, which might allow remote attackers to defeat cryptographic protection mechanisms via unspecified vectors.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS Server | <=5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4754 has a medium severity rating due to its potential to compromise cryptographic protections.
To fix CVE-2016-4754, upgrade to Apple OS X Server version 5.2 or later which disables the RC4 cipher.
CVE-2016-4754 affects Apple OS X Server versions up to and including 5.1.
CVE-2016-4754 is a cryptographic vulnerability related to the use of the insecure RC4 cipher.
Yes, CVE-2016-4754 can be exploited remotely by attackers to weaken cryptographic security mechanisms.