7.2
CVSSv2

CVE-2016-1719

Published: 01/02/2016 Updated: 08/03/2019
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 750
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The IOHIDFamily API in Apple iOS prior to 9.2.1, OS X prior to 10.11.3, and tvOS prior to 9.1.1 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

apple watchos

apple iphone os

apple tvos

apple mac os x

Exploits

Source: codegooglecom/p/google-security-research/issues/detail?id=605 Panic log attached OS X advisory: supportapplecom/en-us/HT205731 iOS advisory: supportapplecom/en-us/HT205732 Proof of Concept: githubcom/offensive-security/exploitdb-bin-sploits/raw/master/bin-sploits/39362zip ...
Source: codegooglecom/p/google-security-research/issues/detail?id=607 Panic log attached OS X advisory: supportapplecom/en-us/HT205731 iOS advisory: supportapplecom/en-us/HT205732 Proof of Concept: githubcom/offensive-security/exploitdb-bin-sploits/raw/master/bin-sploits/39360zip ...
Source: codegooglecom/p/google-security-research/issues/detail?id=608 Panic log attached OS X advisory: supportapplecom/en-us/HT205731 iOS advisory: supportapplecom/en-us/HT205732 Proof of Concept: githubcom/offensive-security/exploitdb-bin-sploits/raw/master/bin-sploits/39359zip ...
Source: codegooglecom/p/google-security-research/issues/detail?id=606 Panic log attached OS X advisory: supportapplecom/en-us/HT205731 iOS advisory: supportapplecom/en-us/HT205732 Proof of Concept: githubcom/offensive-security/exploitdb-bin-sploits/raw/master/bin-sploits/39361zip ...
Source: codegooglecom/p/google-security-research/issues/detail?id=603 Panic log attached OS X advisory: supportapplecom/en-us/HT205731 iOS advisory: supportapplecom/en-us/HT205732 Proof of Concept: githubcom/offensive-security/exploitdb-bin-sploits/raw/master/bin-sploits/39364zip ...
Source: codegooglecom/p/google-security-research/issues/detail?id=604 Panic log attached OS X advisory: supportapplecom/en-us/HT205731 iOS advisory: supportapplecom/en-us/HT205732 Proof of Concept: githubcom/offensive-security/exploitdb-bin-sploits/raw/master/bin-sploits/39363zip ...

References

CWE-119http://lists.apple.com/archives/security-announce/2016/Jan/msg00003.htmlhttp://lists.apple.com/archives/security-announce/2016/Jan/msg00005.htmlhttps://code.google.com/p/google-security-research/issues/detail?id=607https://support.apple.com/HT205729https://code.google.com/p/google-security-research/issues/detail?id=606https://support.apple.com/HT205732https://code.google.com/p/google-security-research/issues/detail?id=608https://support.apple.com/HT205731http://lists.apple.com/archives/security-announce/2016/Jan/msg00002.htmlhttps://code.google.com/p/google-security-research/issues/detail?id=605https://code.google.com/p/google-security-research/issues/detail?id=604https://code.google.com/p/google-security-research/issues/detail?id=603https://support.apple.com/HT206168http://lists.apple.com/archives/security-announce/2016/Mar/msg00001.htmlhttp://packetstormsecurity.com/files/135438/iOS-Kernel-IOReportHub-Use-After-Free.htmlhttps://www.exploit-db.com/exploits/39359/https://www.exploit-db.com/exploits/39360/https://www.exploit-db.com/exploits/39361/https://www.exploit-db.com/exploits/39362/http://packetstormsecurity.com/files/135442/iOS-Kernel-AppleOscarAccelerometer-Use-After-Free.htmlhttp://packetstormsecurity.com/files/135441/iOS-Kernel-AppleOscarCompass-Use-After-Free.htmlhttp://packetstormsecurity.com/files/135440/iOS-Kernel-AppleOscarCMA-Use-After-Free.htmlhttps://www.exploit-db.com/exploits/39363/https://www.exploit-db.com/exploits/39364/http://packetstormsecurity.com/files/135439/iOS-Kernel-IOHIDEventService-Use-After-Free.htmlhttp://packetstormsecurity.com/files/135443/iOS-Kernel-AppleOscarGyro-Use-After-Free.htmlhttp://www.securitytracker.com/id/1034736https://nvd.nist.govhttps://www.exploit-db.com/exploits/39362/