SB2016072211 - Information disclosure in Apple iOS 



SB2016072211 - Information disclosure in Apple iOS

Published: July 22, 2016 Updated: January 13, 2017

Security Bulletin ID SB2016072211
Severity
Low
Patch available
YES
Number of vulnerabilities 1
Exploitation vector Remote access
Highest impact Information disclosure

Breakdown by Severity

Low 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 1 security vulnerability.


1) Information disclosure (CVE-ID: CVE-2016-4635)

The vulnerability allows a remote authenticated user to disclose information.
The weakness exists due to improper processing of relayed call and allows attackers to cause audio transmission after call determination.
Successfull exploitation of the vulnerability results in disclosure of the valid user's personal information.

Remediation

Install update from vendor's website.