CVE-2016-1719: Apple iPhone OS

High severity, CVSS 7.8. EPSS: 1.1% chance of exploitation in the next 30 days.

The IOHIDFamily API in Apple iOS before 9.2.1, OS X before 10.11.3, and tvOS before 9.1.1 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors.

Affected products

  • Apple iPhone OS: up to and including 9.2
  • Apple Mac OS X: up to and including 10.11.2
  • Apple tvOS: up to and including 9.1
  • Apple watchOS: up to and including 2.1

Published 2016-02-01. Last modified 2026-06-17.