An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10.12.1 is affected. tvOS before 10.0.1 is affected. watchOS before 3.1 is affected. The issue involves the "AppleMobileFileIntegrity" component, which allows remote attackers to spoof signed code by using a matching team ID.
References
Link | Resource |
---|---|
https://support.apple.com/HT207275 | Vendor Advisory |
https://support.apple.com/HT207271 | Vendor Advisory |
https://support.apple.com/HT207270 | Vendor Advisory |
https://support.apple.com/HT207269 | Vendor Advisory |
http://www.securityfocus.com/bid/94571 | Third Party Advisory VDB Entry |
Information
Published : 2017-02-20 00:59
Updated : 2019-03-08 08:06
NVD link : CVE-2016-7584
Mitre link : CVE-2016-7584
JSON object : View
CWE
CWE-254
7PK - Security Features
Products Affected
apple
- mac_os_x
- watchos
- iphone_os
- tvos