CVE-2016-1865
published 2016-07-22CVE-2016-1865: The kernel in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows local users to cause a denial of service (NULL…
PriorityP418medium5.5CVSS 3.0
AVLACLPRLUINSUCNINAH
EPSS
0.38%
30.3th percentile
The kernel in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows local users to cause a denial of service (NULL pointer dereference) via unspecified vectors.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios | — | — |
| apple | iphone_os | < 9.3.3 | 9.3.3 |
| apple | mac_os_x | < 10.11.6 | 10.11.6 |
| apple | os_x_el_capitan_v10.11.6_and_security_update_2016-004 | — | — |
| apple | tvos | < 9.2.2 | 9.2.2 |
| apple | tvos | — | — |
| apple | watchos | < 2.2.2 | 2.2.2 |
| apple | watchos | — | — |
CVSS provenance
nvdv3.05.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:N/I:N/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-f4ww-3w5f-fc48: The kernel in Apple iOS before 9
ghsa_unreviewed·2022-05-14
CVE-2016-1865 [MEDIUM] CWE-476 GHSA-f4ww-3w5f-fc48: The kernel in Apple iOS before 9
The kernel in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows local users to cause a denial of service (NULL pointer dereference) via unspecified vectors.
Apple
CVE-2016-1865: watchOS 2.2.2
vendor_apple·2016-07-18·CVSS 5.5
CVE-2016-1865 [MEDIUM] CVE-2016-1865: watchOS 2.2.2
Apple Security Update: About the security content of watchOS 2.2.2
Product: watchOS
Version: 2.2.2
CVE: CVE-2016-1865
Component: Kernel
Impact: A local user may be able to cause a system denial of service
Description: A null pointer dereference was addressed through improved input validation.
Apple
CVE-2016-1865: OS X El Capitan v10.11.6 and Security Update 2016-004
vendor_apple·2016-07-18·CVSS 5.5
CVE-2016-1865 [MEDIUM] CVE-2016-1865: OS X El Capitan v10.11.6 and Security Update 2016-004
Apple Security Update: About the security content of OS X El Capitan v10.11.6 and Security Update 2016-004
Product: OS X El Capitan v10.11.6 and Security Update 2016-004
CVE: CVE-2016-1865
Component: Kernel
Impact: A local user may be able to cause a system denial of service
Description: A null pointer dereference was addressed through improved input validation.
Apple
CVE-2016-1865: tvOS 9.2.2
vendor_apple·2016-07-18·CVSS 5.5
CVE-2016-1865 [MEDIUM] CVE-2016-1865: tvOS 9.2.2
Apple Security Update: About the security content of tvOS 9.2.2
Product: tvOS
Version: 9.2.2
CVE: CVE-2016-1865
Component: Kernel
Impact: A local user may be able to cause a system denial of service
Description: A null pointer dereference was addressed through improved input validation.
Apple
CVE-2016-1865: iOS 9.3.3
vendor_apple·2016-07-18·CVSS 5.5
CVE-2016-1865 [MEDIUM] CVE-2016-1865: iOS 9.3.3
Apple Security Update: About the security content of iOS 9.3.3
Product: iOS
Version: 9.3.3
CVE: CVE-2016-1865
Component: Kernel
Impact: A local user may be able to cause a system denial of service
Description: A null pointer dereference was addressed through improved input validation.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-10164 libXpm: Out-of-bounds write in XPM extension parsing
bugzilla·2017-01-25·CVSS 9.8
CVE-2016-10164 [CRITICAL] CVE-2016-10164 libXpm: Out-of-bounds write in XPM extension parsing
CVE-2016-10164 libXpm: Out-of-bounds write in XPM extension parsing
An out of boundary write has been found in libXpm which can be exploited by an attacker through maliciously crafted XPM files.
The affected code is prone to two 32 bit integer overflows while parsing extensions: the amount of extensions and their concatenated length.
References:
http://seclists.org/oss-sec/2017/q1/167
Upstream patch:
https://cgit.freedesktop.org/xorg/lib/libXpm/commit/?id=d1167418f0fd02a27f617ec5afd6db053afbe185
Discussion:
Created libXpm tracking bugs for this issue:
Affects: fedora-24 [bug 1416442]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2017:1865 https://access.redhat.com/errata/RHSA-2017:1865
Bugzilla
CVE-2016-1000229 swagger-ui: cross-site scripting in key names
bugzilla·2016-07-26·CVSS 6.1
CVE-2016-1000229 [MEDIUM] CVE-2016-1000229 swagger-ui: cross-site scripting in key names
CVE-2016-1000229 swagger-ui: cross-site scripting in key names
The following flaw was found in the swagger-ui library:
Swagger-ui contains a cross site scripting (XSS) vulnerability in the key names for the following object path in the JSON document:
.definitions..properties.
Supplying a key name with script tags causes arbitrary code execution. In addition it is possible to load the arbitrary JSON files remotely via the URL query-string parameter.
Upstream bug:
https://github.com/swagger-api/swagger-ui/issues/1865
External References:
https://nodesecurity.io/advisories/126
Discussion:
DWF assignment:
https://github.com/distributedweaknessfiling/DWF-Database/commit/2d8e72d5449dd1a1f8b89e365e326a0356e38fb0
---
This issue has been addressed in the following products:
Via RHSA-
http://lists.apple.com/archives/security-announce/2016/Jul/msg00000.htmlhttp://lists.apple.com/archives/security-announce/2016/Jul/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2016/Jul/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2016/Jul/msg00003.htmlhttp://www.securityfocus.com/bid/91828http://www.securitytracker.com/id/1036344https://support.apple.com/HT206902https://support.apple.com/HT206903https://support.apple.com/HT206904https://support.apple.com/HT206905http://lists.apple.com/archives/security-announce/2016/Jul/msg00000.htmlhttp://lists.apple.com/archives/security-announce/2016/Jul/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2016/Jul/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2016/Jul/msg00003.htmlhttp://www.securityfocus.com/bid/91828http://www.securitytracker.com/id/1036344https://support.apple.com/HT206902https://support.apple.com/HT206903https://support.apple.com/HT206904https://support.apple.com/HT206905
2016-07-22
Published