Vulnerability Name: | CVE-2016-4614 (CCN-115680) | ||||||||||||||||||||||||
Assigned: | 2016-07-19 | ||||||||||||||||||||||||
Published: | 2016-07-19 | ||||||||||||||||||||||||
Updated: | 2020-12-01 | ||||||||||||||||||||||||
Summary: | libxml2 in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors, a different vulnerability than CVE-2016-4615, CVE-2016-4616, and CVE-2016-4619. | ||||||||||||||||||||||||
CVSS v3 Severity: | 9.8 Critical (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H) 8.5 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
5.5 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L/E:U/RL:O/RC:C)
| ||||||||||||||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||||||||||||||
Vulnerability Type: | CWE-787 | ||||||||||||||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2016-4614 Source: APPLE Type: Mailing List, Vendor Advisory APPLE-SA-2016-07-18-1 Source: APPLE Type: Mailing List, Vendor Advisory APPLE-SA-2016-07-18-2 Source: APPLE Type: Mailing List, Vendor Advisory APPLE-SA-2016-07-18-3 Source: APPLE Type: Mailing List, Vendor Advisory APPLE-SA-2016-07-18-4 Source: APPLE Type: Mailing List, Vendor Advisory APPLE-SA-2016-07-18-6 Source: BID Type: Third Party Advisory, VDB Entry 91826 Source: SECTRACK Type: Third Party Advisory, VDB Entry 1036348 Source: XF Type: UNKNOWN apple-icloud-cve20164614-code-exec(115680) Source: CCN Type: Apple Web site About the security content of iCloud for Windows 5.2.1 Source: CONFIRM Type: Vendor Advisory https://support.apple.com/HT206899 Source: CONFIRM Type: Vendor Advisory https://support.apple.com/HT206901 Source: CONFIRM Type: Vendor Advisory https://support.apple.com/HT206902 Source: CONFIRM Type: Vendor Advisory https://support.apple.com/HT206903 Source: CONFIRM Type: Vendor Advisory https://support.apple.com/HT206904 Source: CONFIRM Type: Vendor Advisory https://support.apple.com/HT206905 | ||||||||||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: ![]() | ||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||
| |||||||||||||||||||||||||
BACK |