Number: AV16-138
Date: 1 September 2016
Purpose
The purpose of this advisory is to bring attention to multiple Apple security updates for OS X El Capitan, OS X Yosemite and Safari.
Assessment
Apple has released the following support articles:
HT207130 - Security Update 2016-001 El Capitan and Security Update 2016-005 Yosemite
HT207131 - Safari 9.1.3
These updates address multiple vulnerabilities, including arbitrary remote code execution.
CVE References: CVE-2016-4654, CVE-2016-4655, CVE-2016-4656
Suggested Action
CCIRC recommends that owner/operators test and deploy the vendor released updates or workarounds to affected platforms referred to in Apple Support Articles HT207130 and HT207131.
References:
https://support.apple.com/en-ca/HT207130
https://support.apple.com/en-ca/HT207131