First published: Mon Feb 20 2017(Updated: )
An issue was discovered in certain Apple products. iOS before 10.2 is affected. Safari before 10.0.2 is affected. iCloud before 6.1 is affected. iTunes before 12.5.4 is affected. The issue involves the "WebKit" component. It allows remote attackers to obtain sensitive information via a crafted web site.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
iStyle @cosme iPhone OS | <=10.1.1 | |
Apple Mobile Safari | <=10.0.1 | |
Apple iCloud for Windows | <=6.0.1 | |
Apple iTunes for Windows | <=12.5.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-7586 has been classified as a moderate severity vulnerability due to the potential for attackers to obtain sensitive information.
To fix CVE-2016-7586, update the affected Apple products to the latest versions: iOS to 10.2 or later, Safari to 10.0.2 or later, iCloud to 6.1 or later, and iTunes to 12.5.4 or later.
CVE-2016-7586 affects iOS versions before 10.2, Safari before 10.0.2, iCloud before 6.1, and iTunes before 12.5.4.
The vulnerability involves the WebKit component, which is widely used in Apple's software for rendering web content.
Yes, CVE-2016-7586 can be exploited remotely by attackers to obtain sensitive information through crafted web content.