Medium severity6.5NVD Advisory· Published Jan 11, 2019· Updated Jun 17, 2026
CVE-2016-4644
CVE-2016-4644
Description
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a downgrade issue existed with HTTP authentication credentials saved in Keychain. This issue was addressed by storing the authentication types with the credentials.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- Range: <9.3.3
- Range: <9.2.2
<v10.11.6 and Security Update 2016-004+ 1 more
- (no CPE)range: <v10.11.6 and Security Update 2016-004
- (no CPE)range: <10.11.6
Patches
Vulnerability mechanics
References
3- support.apple.com/HT206902nvdVendor Advisory
- support.apple.com/HT206903nvdVendor Advisory
- support.apple.com/HT206905nvdVendor Advisory
News mentions
0No linked articles in our index yet.