CVE-2016-4698: Apple iPhone OS
High severity, CVSS 7.8. EPSS: 1.4% chance of exploitation in the next 30 days.
AppleMobileFileIntegrity in Apple iOS before 10 and OS X before 10.12 mishandles process entitlement and Team ID values in the task port inheritance policy, which allows attackers to execute arbitrary code in a privileged context via a crafted app.
Affected products
Published 2016-09-25. Last modified 2026-06-17.