CVE-2016-4739: Apple Mac OS X

Low severity, CVSS 3.7. EPSS: 1.5% chance of exploitation in the next 30 days.

mDNSResponder in Apple OS X before 10.12, when VMnet.framework is used, arranges for a DNS proxy to listen on all interfaces, which allows remote attackers to obtain sensitive information by sending a DNS query to an unintended interface.

Affected products

  • Apple Mac OS X: up to and including 10.11.6

Published 2016-09-25. Last modified 2026-06-17.