NVD disclosure day

Published threat advisories for August 25, 2016

CVE advisoryKnown Exploit

CVE-2016-4657

Apple iOS WebKit Code Execution Vulnerability.

Halo Surface Signal: 3 out of 5 — possibly public-facing.

A WebKit vulnerability in Apple iOS can allow remote attackers to execute code or cause denial of service. This impacts organizations by enabling unauthorized code execution and service disruption. The realistic business risk involves potential data compromise and operational downtime on affected devices.

• CISA KEV

CVE advisoryKnown Exploit

CVE-2016-4656

Apple iOS Kernel Memory Corruption Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in Apple's iOS kernel could allow attackers to execute arbitrary code or cause denial of service through a crafted application. This impacts organizations using affected Apple devices, potentially leading to unauthorized actions or system disruptions. The business risk involves unauthorized code executi

• CISA KEV

CVE advisoryKnown Exploit

CVE-2016-4655

Apple iOS Information Disclosure Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Apple iOS kernel allows crafted applications to access sensitive memory information. This could lead to the exposure of confidential data. The realistic business risk involves potential data breaches if sensitive information is accessed.

• CISA KEV