First published: Sun Sep 25 2016(Updated: )
WebKit in Apple iOS before 10, iTunes before 12.5.1 on Windows, iCloud before 6.0 on Windows, and Safari before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mobile Safari | <=9.1.3 | |
iOS | <=9.3.5 | |
Apple iCloud for Windows | =5.2.1 | |
Apple iTunes for Windows | =12.4.3 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4762 has a medium severity rating due to potential execution of arbitrary code or denial of service.
To fix CVE-2016-4762, update affected Apple software such as Safari, iOS, iCloud, and iTunes to their latest versions.
CVE-2016-4762 affects Safari versions prior to 10, iOS versions prior to 10, iCloud versions prior to 6.0, and iTunes versions prior to 12.5.1.
CVE-2016-4762 can facilitate remote attacks that lead to arbitrary code execution or cause a denial of service through memory corruption.
Microsoft Windows itself is not directly vulnerable to CVE-2016-4762.