vulnerability
Apple iOS Vulnerability: CVE-2016-1728
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 4 | (AV:N/AC:M/Au:N/C:P/I:N/A:N) | Feb 1, 2016 | Feb 19, 2016 | Oct 30, 2017 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:P/I:N/A:N)
Published
Feb 1, 2016
Added
Feb 19, 2016
Modified
Oct 30, 2017
Description
The Cascading Style Sheets (CSS) implementation in Apple iOS before 9.2.1 and Safari before 9.0.3 mishandles the "a:visited button" selector during height processing, which makes it easier for remote attackers to obtain sensitive browser-history information via a crafted web site.
Solution
apple-ios-upgrade-latest
References
- APPLE-APPLE-SA-2016-01-19-1
- APPLE-APPLE-SA-2016-01-19-3
- BID-81263
- CVE-2016-1728
- https://attackerkb.com/topics/CVE-2016-1728
- URL-http://lists.apple.com/archives/security-announce/2016/Jan/msg00002.html
- URL-http://lists.apple.com/archives/security-announce/2016/Jan/msg00004.html
- URL-https://support.apple.com/HT205730
- URL-https://support.apple.com/HT205732
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.