CVE-2016-1847
published 2016-05-20CVE-2016-1847: OpenGL, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to execute arbitrary code…
PriorityP343high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
EPSS
2.04%
79.0th percentile
OpenGL, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios | — | — |
| apple | iphone_os | < 9.3.2 | 9.3.2 |
| apple | mac_os_x | < 10.11.5 | 10.11.5 |
| apple | os_x_el_capitan_v10.11.5_and_security_update_2016-003 | — | — |
| apple | tvos | < 9.2.1 | 9.2.1 |
| apple | tvos | — | — |
| apple | watchos | < 2.2.1 | 2.2.1 |
| apple | watchos | — | — |
CVSS provenance
nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-3x4h-c58x-6jxv: OpenGL, as used in Apple iOS before 9
ghsa_unreviewed·2022-05-14
CVE-2016-1847 [HIGH] CWE-119 GHSA-3x4h-c58x-6jxv: OpenGL, as used in Apple iOS before 9
OpenGL, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.
Red Hat
kernel: tracing/eprobes: Do not allow eprobes to use $stack, or % for regs
vendor_redhat·2025-06-18·CVSS 5.5
CVE-2022-50078 [MEDIUM] CWE-476 kernel: tracing/eprobes: Do not allow eprobes to use $stack, or % for regs
kernel: tracing/eprobes: Do not allow eprobes to use $stack, or % for regs
In the Linux kernel, the following vulnerability has been resolved:
tracing/eprobes: Do not allow eprobes to use $stack, or % for regs
While playing with event probes (eprobes), I tried to see what would
happen if I attempted to retrieve the instruction pointer (%rip) knowing
that event probes do not use pt_regs. The result was:
BUG: kernel NULL pointer dereference, address: 0000000000000024
#PF: supervisor read access in kernel mode
#PF: error_code(0x0000) - not-present page
PGD 0 P4D 0
Oops: 0000 [#1] PREEMPT SMP PTI
CPU: 1 PID: 1847 Comm: trace-cmd Not tainted 5.19.0-rc5-test+ #309
Hardware name: Hewlett-Packard HP Compaq Pro 6300 SFF/339A, BIOS K01
v03.03 07/14/2016
RIP: 0010:get_event_field.isra.0+0x0/0x50
Cod
Apple
CVE-2016-1847: OS X El Capitan v10.11.5 and Security Update 2016-003
vendor_apple·CVSS 8.8
CVE-2016-1847 [HIGH] CVE-2016-1847: OS X El Capitan v10.11.5 and Security Update 2016-003
Apple Security Update: About the security content of OS X El Capitan v10.11.5 and Security Update 2016-003
Product: OS X El Capitan v10.11.5 and Security Update 2016-003
CVE: CVE-2016-1847
Component: CVE-ID
Apple
CVE-2016-1847: iOS 9.3.2
vendor_apple·CVSS 8.8
CVE-2016-1847 [HIGH] CVE-2016-1847: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1847
Component: CVE-ID
Apple
CVE-2016-1847: watchOS 2.2.1
vendor_apple·CVSS 8.8
CVE-2016-1847 [HIGH] CVE-2016-1847: watchOS 2.2.1
Apple Security Update: About the security content of watchOS 2.2.1
Product: watchOS
Version: 2.2.1
CVE: CVE-2016-1847
Component: CVE-ID
Apple
CVE-2016-1847: tvOS 9.2.1
vendor_apple·CVSS 8.8
CVE-2016-1847 [HIGH] CVE-2016-1847: tvOS 9.2.1
Apple Security Update: About the security content of tvOS 9.2.1
Product: tvOS
Version: 9.2.1
CVE: CVE-2016-1847
Component: CVE-ID
No detection rules found.
No public exploits indexed.
Unit42
Palo Alto Networks Researchers Uncover Critical Apple Product Vulnerabilities
blogs_unit42·2016-06-02·CVSS 8.8
CVE-2016-1855 [HIGH] Palo Alto Networks Researchers Uncover Critical Apple Product Vulnerabilities
Threat Research Center
Threat Research
Vulnerabilities
## Palo Alto Networks Researchers Uncover Critical Apple Product Vulnerabilities
Ryan Olson
Published: June 2, 2016
Threat Research
Vulnerabilities
Apple
Apple TV
IPad 2
IPhone 4S
IPod Touch
Palo Alto Networks researchers were recently credited with discovery of two new Apple product vulnerabilities.
Researchers Tongbo Luo and Bo Qu discovered a webkit vulnerability (CVE-2016-1855) affecting Safari in OS X Mavericks v10.9.5, OS X Yosemite v10.10.5 and OS X El Capitan v10.10.5.
Tongbo and Bo also identified an OpenGL vulnerability (CVE-2016-1847) affecting Apple TV (fourth generation and later), iPhone 4S (and later versions), iPod Touch (fifth generation and later), and iPad 2 (and later versions).
Apple addressed bot
Unit42
Palo Alto Networks Researchers Uncover Critical Apple Product Vulnerabilities
blogs_unit42·2016-06-02·CVSS 8.8
CVE-2016-1855 [HIGH] Palo Alto Networks Researchers Uncover Critical Apple Product Vulnerabilities
Palo Alto Networks researchers were recently credited with discovery of two new Apple product vulnerabilities.
Researchers Tongbo Luo and Bo Qu discovered a webkit vulnerability (CVE-2016-1855) affecting Safari in OS X Mavericks v10.9.5, OS X Yosemite v10.10.5 and OS X El Capitan v10.10.5.
Tongbo and Bo also identified an OpenGL vulnerability (CVE-2016-1847) affecting Apple TV (fourth generation and later), iPhone 4S (and later versions), iPod Touch (fifth generation and later), and iPad 2 (and later versions).
Apple addressed both findings in a recent security update. Palo Alto Networks has also released IPS signatures covering these vulnerabilities (for current customers, available in content release 585).
Palo Alto Networks is a regular contributor to vulnerability research in the M
http://lists.apple.com/archives/security-announce/2016/May/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2016/May/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2016/May/msg00003.htmlhttp://lists.apple.com/archives/security-announce/2016/May/msg00004.htmlhttp://www.securityfocus.com/bid/90691http://www.securitytracker.com/id/1035890https://support.apple.com/HT206564https://support.apple.com/HT206566https://support.apple.com/HT206567https://support.apple.com/HT206568http://lists.apple.com/archives/security-announce/2016/May/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2016/May/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2016/May/msg00003.htmlhttp://lists.apple.com/archives/security-announce/2016/May/msg00004.htmlhttp://www.securityfocus.com/bid/90691http://www.securitytracker.com/id/1035890https://support.apple.com/HT206564https://support.apple.com/HT206566https://support.apple.com/HT206567https://support.apple.com/HT206568
2016-05-20
Published