#VU4574 Memory corruption in Apple iOS and macOS - CVE-2016-4656
Published: August 25, 2016 / Updated: May 24, 2022
Apple iOS
macOS
Apple Inc.
Description
The vulnerability exists due to a boundary error when processing a malicious application. A local attacker can run a specially crafted application, trigger memory corruption and execute arbitrary code with SYSTEM privileges.
Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.
Note: the vulnerability was being actively exploited.
Remediation
Update MAC OS X to version 10.11.6.