CVE-2016-7620: Infoleak
Published Feb 20, 2017
·Updated
An issue was discovered in certain Apple products. macOS before 10.12.2 is affected. The issue involves the "IOSurface" component. It allows local users to obtain sensitive kernel memory-layout information via unspecified vectors.
Affected Software
1 affected component
Apple iOS and macOS<=10.12.1
Event History
Feb 20, 2017
CVE Published
via MITRE·08:35 AM
Data Sourced
via MITRE·08:35 AM
Description
Data Sourced
via NVD·08:59 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2016-7620?
CVE-2016-7620 has a high severity rating due to its potential to expose sensitive kernel memory-layout information.
2
How do I fix CVE-2016-7620?
To fix CVE-2016-7620, upgrade your macOS to version 10.12.2 or later.
3
Who is affected by CVE-2016-7620?
CVE-2016-7620 affects local users of macOS versions prior to 10.12.2.
4
What component is involved in CVE-2016-7620?
The vulnerability involves the "IOSurface" component of macOS.
5
Can CVE-2016-7620 be exploited remotely?
No, CVE-2016-7620 requires local access to the affected system to be exploited.